πŸ” CVE Alert

CVE-2026-5218

MEDIUM 4.3

HTML Injection in Softtr's E-Commerce Pack

CVSS Score
4.3
EPSS Score
0.0%
EPSS Percentile
0th

Improper neutralization of Script-Related HTML tags in a web page (basic XSS) vulnerability in Softtr Informatics Technology Trading Limited Company E-Commerce Pack allows Cross-Site Scripting (XSS). This issue affects E-Commerce Pack: before 5.03.01.49.

CWE CWE-80
Vendor softtr informatics technology trading limited company
Product e-commerce pack
Published Aug 27, 2026
Stay Ahead of the Next One

Get instant alerts for softtr informatics technology trading limited company e-commerce pack

Be the first to know when new medium vulnerabilities affecting softtr informatics technology trading limited company e-commerce pack are published β€” delivered to Slack, Telegram or Discord.

Get Free Alerts β†’ Free Β· No credit card Β· 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
Required
Scope
Unchanged
Confidentiality
None
Integrity
Low
Availability
None

Affected Versions

Softtr Informatics Technology Trading Limited Company / E-Commerce Pack
0 < 5.03.01.49

References

NVD β†— CVE.org β†— EPSS Data β†—
siberguvenlik.gov.tr: https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-26-0918

Credits

AkΔ±ner KISA