SEPTEMBER 13, 2026
Live Feed
Back to database
Case File

CVE-2026-57734

HIGH · CVSS 7.1 EPSS 0.18%

Source: NVD + CISA KEV + EPSS · Published 2026-07-13 · Last synced 2026-08-12

CyberRota Analysis

AI-Generated

The vulnerability in tagDiv Composer allows for reflected cross-site scripting (XSS) due to improper input neutralization during web page generation, potentially enabling attackers to execute arbitrary scripts in the context of a user's session. This issue affects all versions of tagDiv Composer up to and including 5.4.3. Organizations using this web development tool should prioritize patching to mitigate the risk of exploitation and protect user data.

CVE
CVE-2026-57734
Severity
HIGH
CVSS
7.1
EPSS
0.18%

Original NVD Description

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in tagDiv tagDiv Composer td-composer allows Reflected XSS.This issue affects tagDiv Composer: from n/a through <= 5.4.3.