Stored Cross-Site Scripting Vulnerability in Heptabase by Hepta Platforms, Inc.
CVE-2026-78213
6.2MEDIUM
What is CVE-2026-78213?
The Heptabase application, developed by Hepta Platforms, Inc., is susceptible to a Stored Cross-Site Scripting flaw. This vulnerability allows authenticated remote attackers to inject persistent malicious scripts into designated pages. When other users subsequently interact with these compromised pages, the injected JavaScript code executes in their browsers, potentially leading to unauthorized actions or data exfiltration. Mitigating this issue is critical to safeguarding user data and maintaining application integrity.
Affected Version(s)
Heptabase all
