Unrated severityNVD Advisory· Published Aug 26, 2026
CVE-2026-39275
CVE-2026-39275
Description
Cross Site Scripting vulnerability in Cockpit CMS v.2.13.5 and before allows a remote attacker to execute arbitrary code via the item.php, field-select.js and tags.js components.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Range: <=2.13.5
<=2.13.5+ 1 more
- (no CPE)range: <=2.13.5
- (no CPE)
Patches
Vulnerability mechanics
News mentions
0No linked articles in our index yet.