Cross-Site Scripting Vulnerability in Repasat Application from Incibe
CVE-2026-59664
4.8MEDIUM
What is CVE-2026-59664?
The Repasat application contains a Cross-Site Scripting vulnerability that allows attackers to exploit the 'nomServicioPrestado' parameter on the '/es/providedservices/store' endpoint. By successfully leveraging this vulnerability, an attacker can deceive users into executing arbitrary code within their browser environment, potentially leading to unauthorized data access or manipulation. Users should remain vigilant and apply necessary security measures to mitigate the risks associated with this vulnerability.
Affected Version(s)
Repasat application 0
