CVE-2026-54644 | CubeCart up to 6.7.4 GUI Message classes/gui.class.php _errorMessage cross site scripting
A vulnerability marked as problematic has been reported in CubeCart up to 6.7.4. Affected is the function _errorMessage of the file classes/gui.class.php of the component GUI Message Handler. The manipulation leads to cross site scripting.
This vulnerability is referenced as CVE-2026-54644. Remote exploitation of the attack is possible. No exploit is available.
It is suggested to upgrade the affected component.VulDB Recent EntriesRead More