CVE-2026-54644 | CubeCart up to 6.7.4 GUI Message classes/gui.class.php _errorMessage cross site scripting

SecurityVulns

A vulnerability marked as problematic has been reported in CubeCart up to 6.7.4. Affected is the function _errorMessage of the file classes/gui.class.php of the component GUI Message Handler. The manipulation leads to cross site scripting.

This vulnerability is referenced as CVE-2026-54644. Remote exploitation of the attack is possible. No exploit is available.

It is suggested to upgrade the affected component.VulDB Recent EntriesRead More