Medium severity4.9NVD Advisory· Published Apr 24, 2026· Updated Apr 24, 2026
CVE-2026-31050
CVE-2026-31050
Description
Cross Site Scripting vulnerability in Hostbill v.2025-11-24 and 2025-12-01 allows a remote attacker to execute arbitrary code
Affected products
1- Range: = 2025-11-24, = 2025-12-01
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- blog.hostbillapp.com/2025/12/03/hostbill-security-advisory/nvd
- github.com/Muhammad5235/HostBill-CVEs-2025/blob/main/Stored%20Cross-Site%20Scripting%20%28XSS%29%20Vulnerability/admin%20and%20client%20interfacesnvd
- hostbillapp.com/changelognvd
- hostbillapp.com/release-notes/11-27-2025.htmlnvd
- hostbillapp.com/release-notes/12-01-2025.htmlnvd
- hostbillapp.com/responsible-disclosurenvd
News mentions
0No linked articles in our index yet.