PT-2026-4394 · Unknown · Kaira Blockons

Theviper

·

Published

2026-01-23

·

Updated

2026-01-24

·

CVE-2026-24550

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions Kaira Blockons versions through 1.2.15
Description The software contains a flaw related to improper input handling during web page generation, which allows for Stored Cross-site Scripting (XSS). This means that malicious scripts can be stored on the target server and executed in the context of other users' browsers. The vulnerability affects the Blockons application.
Recommendations Update to a version newer than 1.2.15.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2026-24550

Affected Products

Kaira Blockons