CyberRota Analysis
AI-GeneratedSOY Calendar is vulnerable to a cross-site scripting (XSS) flaw that allows an attacker to execute arbitrary scripts in the web browser of users during the login process. This could lead to session hijacking, data theft, or other malicious actions against users. Organizations using SOY Calendar should prioritize patching this vulnerability to protect their users from potential exploitation.
CVE
CVE-2026-77838
Severity
MEDIUM
CVSS
5.4
EPSS
0.17%
Original NVD Description
SOY Calendar contains a cross-site scripting vulnerability. An arbitrary script may be executed on the web browser of the user who is logging in to the product.