High severity7.6NVD Advisory· Published Feb 20, 2026· Updated Jun 17, 2026
CVE-2026-26724
CVE-2026-26724
Description
Cross Site Scripting vulnerability in Key Systems Inc Global Facilities Management Software v. 20230721a allows a remote attacker to execute arbitrary code via the selectgroup and gn parameters on the /?Function=Groups endpoint.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
320230721a+ 1 more
- (no CPE)range: 20230721a
- (no CPE)
- cpe:2.3:a:keystorage:global_facilities_management_software:20230721a:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- github.com/chndlrx/vulnerability-disclosures/tree/main/CVE-2026-26724nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.