Cross-Site Scripting Vulnerability in Repasat Application by Incibe
CVE-2026-59666
4.8MEDIUM
What is CVE-2026-59666?
A Cross-Site Scripting (XSS) vulnerability exists in the Repasat application that could allow attackers to exploit the 'nomOrigen' parameter within the endpoint '/es/origins/store'. This exploitation can lead to unauthorized execution of arbitrary code in the victim’s browser, potentially compromising user interactions and data integrity. It is crucial to implement security measures to safeguard against such vulnerabilities to protect users and maintain trust.
Affected Version(s)
Repasat application 0
