5.4
/ 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Description
IBM Content Navigator 3.0.15, 3.1.0, and 3.2.0 is vulnerable to cross-site scripting. This vulnerability allows an authenticated user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
Basic Information
ID
CVE-2026-1243
Source
ibm
Published
Apr 2, 2026 at 00:14
Modified
Apr 2, 2026 at 13:49
Affected Product
Vendor
IBM
Product
Content Navigator
Version
3.0.15
Affected Versions
IBM Content Navigator 3.0.15
IBM Content Navigator 3.1.0
IBM Content Navigator 3.2.0
IBM Content Navigator 3.1.0
IBM Content Navigator 3.2.0