CyberRota Analysis
AI-GeneratedThe vulnerability allows for reflected cross-site scripting (XSS) in the RT-Theme 18 and its extensions, enabling attackers to inject malicious scripts into web pages viewed by users. This can lead to unauthorized actions on behalf of users or the theft of sensitive information. Organizations using affected versions of RT-Theme 18 should prioritize patching this vulnerability to mitigate potential exploitation risks.
CVE
CVE-2026-57745
Severity
HIGH
CVSS
7.1
EPSS
0.18%
Original NVD Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in stmcan RT-Theme 18 | Extensions rt18-extensions allows Reflected XSS.This issue affects RT-Theme 18 | Extensions: from n/a through <= 2.5.