CVE-2026-14449EPSS p35.7%

CVE-2026-14449CVE-2026-14449

Description

u5CMS through v12.8.8 is vulnerable to reflected XSS via the ‘thanks’ parameter in multiple form components

Scoring

EPSS0.44% probability of exploitation · percentile 35.7% · 2026-10-05T12:00:23Z
Last modified2026-07-02
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.