Reflected XSS Vulnerability in Ceviz Informatics Web Design Product
CVE-2026-5953

6.1MEDIUM

Key Information:

Vendor
CVE Published:
28 August 2026

What is CVE-2026-5953?

A reflected XSS vulnerability has been identified in the Web Design product of Ceviz Informatics Inc., which allows attackers to inject malicious scripts into web pages. This flaw occurs due to improper handling of user input, enabling the execution of scripts in the context of a user's browser. If exploited, this vulnerability can lead to unauthorized data access and manipulation, compromising user security and privacy. Immediate remediation is advised to protect users from potential attacks.

Affected Version(s)

Web Design 0 <= 25082026

References

CVSS V3.1

Score:
6.1
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Mehmet Akif KUBUR
.