PT-2026-38421 · Gosoft Software Industry Trade · Proticaret E-Commerce

Ferit Özner

·

Published

2026-05-07

·

Updated

2026-05-07

·

CVE-2026-3953

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Gosoft Software Industry and Trade Ltd. Co. Proticaret E-Commerce allows Cross-Site Scripting (XSS), Reflected XSS.
This issue affects Proticaret E-Commerce: from v5.0.0 before V 6.0.1767.1383.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2026-3953

Affected Products

Proticaret E-Commerce