SEPTEMBER 18, 2026
Live Feed
Back to database
Case File

CVE-2026-57365

MEDIUM · CVSS 6.5 EPSS 0.16%

Source: NVD + CISA KEV + EPSS · Published 2026-07-13 · Last synced 2026-08-12

CyberRota Analysis

AI-Generated

The vulnerability affects the reCAPTCHA (v2 & v3) integration for Asgaros Forum, allowing for DOM-based cross-site scripting (XSS) due to improper input neutralization during web page generation. This could enable attackers to execute arbitrary scripts in the context of a user's session, potentially compromising user data and session integrity. Forum administrators using affected versions should prioritize patching to mitigate the risk of exploitation.

CVE
CVE-2026-57365
Severity
MEDIUM
CVSS
6.5
EPSS
0.16%

Original NVD Description

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Hitesh Chandwani reCAPTCHA (v2 &amp; v3) for Asgaros Forum recaptcha-for-asgaros-forum allows DOM-Based XSS.This issue affects reCAPTCHA (v2 &amp; v3) for Asgaros Forum: from n/a through <= 1.1.0.