PT-2026-23252 · Janstudio · Janstudio Gecko

João Pedro S Alcântara

+1

·

Published

2026-03-05

·

Updated

2026-03-05

·

CVE-2026-27375

CVSS v3.1

7.1

High

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions JanStudio Gecko versions prior to 1.9.8
Description A Reflected Cross-site Scripting (XSS) issue exists in JanStudio Gecko. This allows for the injection of malicious scripts through improper input handling during web page generation. The issue impacts the Gecko browser engine.
Recommendations Update JanStudio Gecko to a version newer than 1.9.8.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2026-27375

Affected Products

Janstudio Gecko