Cross-Site Scripting Vulnerability in Repasat Application
CVE-2026-59667
4.8MEDIUM
What is CVE-2026-59667?
The Repasat application has a Cross-Site Scripting vulnerability that exploits the 'nomTamano' parameter in the '/es/companysizemployees/update' endpoint. Successful exploitation allows attackers to inject malicious scripts into the victim's browser, potentially enabling unauthorized actions or data manipulation without user consent. Proper sanitization and validation techniques are essential to mitigate risks associated with this vulnerability.
Affected Version(s)
Repasat application 0
