Reflected XSS Vulnerability in Atarim by Vito Peleg
CVE-2025-26993
7.1HIGH
What is CVE-2025-26993?
A reflected cross-site scripting vulnerability exists in the Atarim plugin developed by Vito Peleg. This flaw allows attackers to inject malicious scripts into web pages viewed by users, which can lead to data theft or session hijacking. The vulnerability impacts versions of Atarim up to 4.1.0, making input validation critical to maintaining user security and application integrity.
Affected Version(s)
Atarim <= 4.1.0