AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-65937

HIGH · CVSS 8 EPSS 0.24%

Source: NVD + CISA KEV + EPSS · Published 2026-08-12 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

WhatsUp Gold versions prior to 2026.0.2 are vulnerable to an authenticated attacker who can bypass frontend controls, allowing for the injection of persistent script content. This vulnerability poses a significant risk as it could lead to cross-site scripting (XSS) attacks, potentially compromising user data and application integrity. Organizations using affected versions should prioritize patching to mitigate the risk of exploitation.

CVE
CVE-2026-65937
Severity
HIGH
CVSS
8
EPSS
0.24%

Original NVD Description

In WhatsUp Gold versions released before 2026.0.2, an authenticated attacker can bypass frontend controls and inject persistent script content.