CVE-2026-5953: Reflected XSS in Ceviz Informatics's Web Design
Published Aug 28, 2026
·Updated
Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Ceviz Informatics Inc. Web Design allows Reflected XSS.
This issue affects Web Design: through 25082026.
Affected Software
1 affected component
Ceviz Informatics Inc. Web Design<25082026
Event History
Aug 28, 2026
CVE Published
via MITRE·02:04 PM
Data Sourced
via MITRE·02:04 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What access does an attacker need to exploit this issue?
The attack can be carried out over the network and does not require prior privileges or authentication. Exploitation requires user interaction.
2
What is the expected security impact?
Successful exploitation may result in low-impact disclosure of information and low-impact modification of data. The availability impact is rated as none, and the impact can extend beyond the vulnerable component's security scope.
3
Which versions are reported as affected?
Web Design is reported as affected through version or release identifier 25082026. No unaffected version or fixed release is provided in the available data.