CVE-2026-19727EPSS p3.5%
CVE-2026-19727CVE-2026-19727
Description
Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Yordam Information Technology Consulting, Training and Electronic Systems Industry and Trade Inc. Library Information and Document Automation Program allows XSS Targeting HTML Attributes.
This issue affects Library Information and Document Automation Program: before v22.2.
Scoring
| CVSS | 6.1 () |
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N |
| EPSS | 0.15% probability of exploitation · percentile 3.5% · 2026-10-05T12:00:23Z |
| Last modified | 2026-09-08 |