AUGUST 16, 2026
Live Feed
Back to database
Case File

CVE-2026-54217

MEDIUM · CVSS 5.3 EPSS 0.26%

Source: NVD + CISA KEV + EPSS · Published 2026-08-07 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

The Tobit Laboratories AG TeamDavid's Webbox application is susceptible to a stored cross-site scripting (XSS) vulnerability, allowing attackers to embed malicious JavaScript in emails. When users open these emails, the XSS is executed, potentially compromising user data and session integrity. Organizations using TeamDavid through Rollout 524 should prioritize addressing this vulnerability to mitigate risks associated with user exploitation.

CVE
CVE-2026-54217
Severity
MEDIUM
CVSS
5.3
EPSS
0.26%
Java

Original NVD Description

Tobit Laboratories AG TeamDavid's Webbox application is vulnerable to a stored XSS vulnerability. An attacker can send an email containing malicious JavaScript code. When a user accesses the email, the stored cross-site scripting is triggered. This issue affects TeamDavid through Rollout 524.