SEPTEMBER 14, 2026
Live Feed
Back to database
Case File

CVE-2026-57695

HIGH · CVSS 7.1 EPSS 0.18%

Source: NVD + CISA KEV + EPSS · Published 2026-07-13 · Last synced 2026-08-12

CyberRota Analysis

AI-Generated

The vulnerability in Dan Rossiter Document Gallery allows for reflected cross-site scripting (XSS) attacks, enabling an attacker to inject malicious scripts into web pages viewed by users. This can lead to unauthorized actions being performed on behalf of users or the theft of sensitive information. Organizations using Document Gallery versions up to 5.1.0 should prioritize patching this vulnerability to mitigate potential exploitation risks.

CVE
CVE-2026-57695
Severity
HIGH
CVSS
7.1
EPSS
0.18%

Original NVD Description

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Dan Rossiter Document Gallery document-gallery allows Reflected XSS.This issue affects Document Gallery: from n/a through <= 5.1.0.