CVE-2026-1434
Reflected XSS in Omega-PSIR
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
Omega-PSIR is vulnerable to Reflected XSS via the lang parameter. An attacker can craft a malicious URL that, when opened, causes arbitrary JavaScript to execute in the victim’s browser. This issue was fixed in 4.6.7.
| CWE | CWE-79 |
| Vendor | politechnika warszawska |
| Product | omega-psir |
| Published | Feb 27, 2026 |
| Last Updated | Feb 27, 2026 |
Stay Ahead of the Next One
Get instant alerts for politechnika warszawska omega-psir
Be the first to know when new unknown vulnerabilities affecting politechnika warszawska omega-psir are published — delivered to Slack, Telegram or Discord.
Get Free Alerts →
Free · No credit card · 60 sec setup
Affected Versions
Politechnika Warszawska / Omega-PSIR
4.5.9 ≤ 4.6.6
References
Credits
Łukasz Rybak