CVE-2026-40545
Reflected XSS in SOPlanning
CVSS Score
0.0
EPSS Score
0.1%
EPSS Percentile
23th
SOPlanning is vulnerable to Reflected XSS via the taches parameter. An attacker can craft a malicious URL which, when opened by authenticated victim, results in arbitrary JavaScript execution in the victim’s browser. This issue affects SOPlanning version 1.55 and below.
| CWE | CWE-79 |
| Vendor | soplanning |
| Product | soplanning |
| Published | Jun 1, 2026 |
| Last Updated | Jun 1, 2026 |
Stay Ahead of the Next One
Get instant alerts for soplanning soplanning
Be the first to know when new unknown vulnerabilities affecting soplanning soplanning are published — delivered to Slack, Telegram or Discord.
Get Free Alerts →
Free · No credit card · 60 sec setup
Affected Versions
SOPlanning / SOPlanning
0 ≤ 1.55
References
Credits
Łukasz Jaworski