๐Ÿ” CVE Alert

CVE-2026-78047

UNKNOWN 0.0

Dimension Stored XSS in Scheduled Report Task

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

A stored cross-site scripting (XSS) vulnerability in WatchGuard Dimension's task scheduling feature allows a low-privileged authenticated administrator to inject arbitrary HTML/JavaScript into these fields, which then executes in the browser session of any other user.

CWE CWE-79
Vendor watchguard
Product dimension
Published Aug 27, 2026
Stay Ahead of the Next One

Get instant alerts for watchguard dimension

Be the first to know when new unknown vulnerabilities affecting watchguard dimension are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

WatchGuard / Dimension
2.0 < 2.3.1

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
psirt.watchguard.com: https://psirt.watchguard.com/CVE-2026-78047

Credits

Simone Paganessi (https://www.linkedin.com/in/simonepaganessi)