PT-2026-22330 · Unknown · Omega-Psir

Łukasz Rybak

·

Published

2026-02-27

·

Updated

2026-02-27

·

CVE-2026-1434

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Omega-PSIR versions prior to 4.6.7
Description Omega-PSIR is susceptible to a Reflected Cross-Site Scripting (XSS) issue. An attacker can create a malicious URL utilizing the lang parameter. When a user opens this URL, it can lead to the execution of arbitrary JavaScript code within the user's browser. The vulnerable parameter is lang. The affected API endpoint is not specified.
Recommendations Update Omega-PSIR to version 4.6.7 or later.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2026-1434

Affected Products

Omega-Psir