SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-78616

MEDIUM · CVSS 4.8 EPSS 0.19%

Source: NVD + CISA KEV + EPSS · Published 2026-08-28 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A stored cross-site scripting vulnerability in WatchGuard Dimension's Trusted CA certificate configuration allows authenticated administrators to inject and execute arbitrary JavaScript in the web browsers of other authenticated administrators. This could lead to unauthorized actions or data exposure within the application. Organizations using WatchGuard Dimension should prioritize remediation to mitigate potential security risks associated with this vulnerability.

CVE
CVE-2026-78616
Severity
MEDIUM
CVSS
4.8
EPSS
0.19%
Java

Original NVD Description

A Stored Cross-Site Scripting (XSS) vulnerability in WatchGuard Dimension's Trusted CA certificate configuration allows an authenticated administrator to execute arbitrary JavaScript in another authenticated administrator's web browser by saving a carefully crafted certificate.