PT-2026-31274 · Tagdiv · Tagdiv Composer

Published

2026-04-08

·

Updated

2026-04-12

·

CVE-2026-39712

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions tagDiv Composer versions through 5.4.3
Description An Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) issue exists in tagDiv Composer td-composer, allowing Code Injection. This allows for potential code execution through the injection of scripts.
Recommendations Update tagDiv Composer to a version newer than 5.4.3.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2026-39712

Affected Products

Tagdiv Composer