Stored Cross-Site Scripting (XSS) vulnerability in Loggro Pymes, via the
'descripción'
parameter in the '/loggrodemo/jbrain/MaestraCuentasBancarias' endpoint.
'descripción'
parameter in the '/loggrodemo/jbrain/MaestraCuentasBancarias' endpoint.
Advisories
No advisories yet.
Fixes
Solution
The vulnerabilities have been fixed by Loggro Pymes team in version 1.0.124.
Workaround
No workaround given by the vendor.
References
History
Mon, 09 Feb 2026 12:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Stored Cross-Site Scripting (XSS) vulnerability in Loggro Pymes, via the 'descripción' parameter in the '/loggrodemo/jbrain/MaestraCuentasBancarias' endpoint. | |
| Title | Stored Cross-Site Scripting (XSS) vulnerability in Loggro Pymes | |
| First Time appeared |
Loggro Pymes
Loggro Pymes loggro Pymes |
|
| Weaknesses | CWE-79 | |
| CPEs | cpe:2.3:a:loggro_pymes:loggro_pymes:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Loggro Pymes
Loggro Pymes loggro Pymes |
|
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2026-02-09T13:12:59.317Z
Reserved: 2026-02-05T10:39:17.734Z
Link: CVE-2026-1959
No data.
Status : Received
Published: 2026-02-09T12:15:57.767
Modified: 2026-02-09T12:15:57.767
Link: CVE-2026-1959
No data.
OpenCVE Enrichment
No data.
Weaknesses