SEPTEMBER 13, 2026
Live Feed
Back to database
Case File

CVE-2026-57745

HIGH · CVSS 7.1 EPSS 0.18%

Source: NVD + CISA KEV + EPSS · Published 2026-07-13 · Last synced 2026-08-12

CyberRota Analysis

AI-Generated

The vulnerability allows for reflected cross-site scripting (XSS) in the RT-Theme 18 and its extensions, enabling attackers to inject malicious scripts into web pages viewed by users. This can lead to unauthorized actions on behalf of users or the theft of sensitive information. Organizations using affected versions of RT-Theme 18 should prioritize patching this vulnerability to mitigate potential exploitation risks.

CVE
CVE-2026-57745
Severity
HIGH
CVSS
7.1
EPSS
0.18%

Original NVD Description

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in stmcan RT-Theme 18 | Extensions rt18-extensions allows Reflected XSS.This issue affects RT-Theme 18 | Extensions: from n/a through <= 2.5.