CVE-2026-5953: Reflected XSS in Ceviz Informatics's Web Design

Published Aug 28, 2026
·
Updated

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Ceviz Informatics Inc. Web Design allows Reflected XSS.

This issue affects Web Design: through 25082026.

Affected Software

1 affected component
Ceviz Informatics Inc. Web Design<25082026

Event History

Aug 28, 2026
CVE Published
via MITRE·02:04 PM
Data Sourced
via MITRE·02:04 PM
DescriptionSeverityWeakness

Frequently Asked Questions

1

What access does an attacker need to exploit this issue?

The attack can be carried out over the network and does not require prior privileges or authentication. Exploitation requires user interaction.

2

What is the expected security impact?

Successful exploitation may result in low-impact disclosure of information and low-impact modification of data. The availability impact is rated as none, and the impact can extend beyond the vulnerable component's security scope.

3

Which versions are reported as affected?

Web Design is reported as affected through version or release identifier 25082026. No unaffected version or fixed release is provided in the available data.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203