CVE-2025-26981
CVSS 3.1 Score 7.1 of 10 (high)
Details
Published Feb 25, 2025
CWE ID 79
Summary
CVE-2025-26981 is a Cross-Site Scripting (XSS) vulnerability affecting accessiBe Web Accessibility software. The flaw, named "Improper Neutralization of Input During Web Page Generation," enables attackers to inject malicious code into web pages generated by the application. This could potentially lead to stealing user data, session hijacking, or other malicious activities. The vulnerability affects all versions of accessiBe Web Accessibility from n/a through 2.5. Users are advised to apply the latest patches or upgrades to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share