๐Ÿ” CVE Alert

CVE-2026-46594

UNKNOWN 0.0

Reflected XSS in PHP Poll Script

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

A reflected cross-site scripting (XSS) vulnerability has been identified in the PHP Jabbers - PHP Poll Script. A malicious attacker can craft a specially crafted URL that, when opened, results in arbitrary JavaScript execution in the victim's browser. This issue was fixed in version 4.1.

CWE CWE-79
Vendor php jabbers
Product php poll script
Published Jul 31, 2026
Stay Ahead of the Next One

Get instant alerts for php jabbers php poll script

Be the first to know when new unknown vulnerabilities affecting php jabbers php poll script are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

PHP Jabbers / PHP Poll Script
0 < 4.1

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
cert.pl: https://cert.pl/en/posts/2026/07/CVE-2025-67649/ phpjabbers.com: https://www.phpjabbers.com/php-poll-script/

Credits

Kamil Szczurowski Robert Kruczek