CVE-2026-5783EPSS p20.1%

CVE-2026-5783CVE-2026-5783

Description

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Beyaz Computer Software Design Industry and Trade Ltd. Co. CityPLus allows Reflected XSS. This issue affects CityPLus: before V24.29750.1.0.

Scoring

CVSS 7.6 ()
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:H
EPSS0.29% probability of exploitation · percentile 20.1% · 2026-10-05T12:00:23Z
Last modified2026-07-23
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.