Loading market data...
← Back to CVE feed

CVE-2026-79419

UNKNOWN View on NVD ↗

Description

A reflected cross-site scripting (XSS) vulnerability exists in EMX Tecnologia Gestao X Business Suite 8.4 and earlier. The vulnerability is caused by insufficient validation and sanitization of the mensagem parameter in the /Configuracao/Imagens.aspx endpoint, allowing an authenticated attacker to inject arbitrary JavaScript code that is reflected and executed in the context of a victim's browser.

Published: Sep 04, 2026 16:18 UTC Modified: Sep 05, 2026 02:17 UTC