Cross-Site Scripting Vulnerability in Repasat Application
CVE-2026-59672
4.8MEDIUM
What is CVE-2026-59672?
A Cross-Site Scripting vulnerability exists in the Repasat application, specifically affecting the 'nomGrupoEmpresarial' parameter on the endpoint '/es/corporategroups/update/246'. If exploited, this flaw can enable attackers to deceive users into executing malicious code within their browsers, leading to unauthorized actions and potential data theft.
Affected Version(s)
Repasat application 0
