Cross-Site Scripting Flaw in Repasat Application by INCE
CVE-2026-59670
4.8MEDIUM
What is CVE-2026-59670?
The Repasat application is vulnerable to a Cross-Site Scripting flaw that can be exploited by an attacker to execute arbitrary code in the user's web browser. The attack targets the 'nomListaValidacion' parameter via the endpoint '/es/validationslists/assignList/Employee/45659'. This vulnerability emphasizes the importance of input validation to prevent malicious scripts from being injected and executed.
Affected Version(s)
Repasat application 0
