SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2026-5793

MEDIUM · CVSS 6.1 EPSS 0.15%

Source: NVD + CISA KEV + EPSS · Published 2026-07-09 · Last synced 2026-08-08

CyberRota Analysis

AI-Generated

The vulnerability in BiEticaret prior to version 3.3.57 allows for reflected cross-site scripting (XSS) due to improper handling of user input during web page generation. This could enable attackers to execute arbitrary scripts in the context of a user's session, potentially compromising sensitive information or performing unauthorized actions. Organizations using affected versions of BiEticaret should prioritize patching to mitigate the risk of exploitation.

CVE
CVE-2026-5793
Severity
MEDIUM
CVSS
6.1
EPSS
0.15%

Original NVD Description

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Inrove Software and Internet Services BiEticaret allows Reflected XSS. This issue affects BiEticaret: before v3.3.57.