CVE-2026-59671
Repasat application
Low priority
Cross-Site Scripting vulnerability in the Repasat application. Successful exploitation of this vulnerability could allow an attacker to trick a user into executing arbitrary code in the victim’s browser. The endpoint “/es/datatables/getemployeetypesdatatable” is affected.
In the news
- Múltiples vulnerabilidades en la aplicación de Repasat · INCIBE-CERT