CyberRota Analysis
AI-GeneratedWhatsUp Gold versions prior to 2026.0.2 are vulnerable to an authenticated attacker who can bypass frontend controls, allowing for the injection of persistent script content. This vulnerability poses a significant risk as it could lead to cross-site scripting (XSS) attacks, potentially compromising user data and application integrity. Organizations using affected versions should prioritize patching to mitigate the risk of exploitation.
CVE
CVE-2026-65937
Severity
HIGH
CVSS
8
EPSS
0.24%
Original NVD Description
In WhatsUp Gold versions released before 2026.0.2, an authenticated attacker can bypass frontend controls and inject persistent script content.