Cross-Site Scripting Vulnerability in Repasat Application by Incibe
CVE-2026-59669
4.8MEDIUM
What is CVE-2026-59669?
A Cross-Site Scripting (XSS) vulnerability exists in the Repasat application, specifically affecting the 'name' parameter in the update endpoint (/es/attachmenttypes/update/203336). Successful exploitation of this flaw could enable an attacker to execute arbitrary code in the browser of affected users, potentially compromising sensitive information and user integrity.
Affected Version(s)
Repasat application 0
