Multiple Cross-Site Scripting Vulnerabilities in SonicWall GMS Products
CVE-2026-66146
6.1MEDIUM
What is CVE-2026-66146?
Multiple Cross-Site Scripting (XSS) vulnerabilities have been identified in SonicWall's GMS 9.5.1 and earlier versions. These vulnerabilities enable remote attackers to inject and execute harmful JavaScript code in the user's browser, potentially compromising user sessions or exposing sensitive information. Proper validation and sanitization of user inputs are crucial to mitigate these vulnerabilities.
Affected Version(s)
GMS Windows 9.5.1 and earlier versions