CVE-2025-59905 – Reflected Cross-Site Scripting (XSS) in Kubysoft

CVE ID : CVE-2025-59905

Published : Feb. 16, 2026, 10:16 a.m. | 19 minutes ago

Description : Cross-Site Scripting (XSS) vulnerability reflected in Kubysoft, which occurs through multiple parameters within the endpoint ‘/node/kudaby/nodeFN/procedure’. This flaw allows the injection of arbitrary client-side scripts, which are immediately reflected in the HTTP response and executed in the victim’s browser.

Severity: 4.8 | MEDIUM

Visit the link for more details, such as CVSS details, affected products, timeline, and more… 

نوشته های مشابه