Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2026-5026

20
FAUCET Score

CVE-2026-5026 is a stored Cross-Site Scripting (XSS) vulnerability found in an unspecified product, where an API endpoint serves SVG files without sanitizing their content. An attacker can upload malicious SVG files containing embedded JavaScript, which then executes when viewed by other users. This allows for the potential theft of authentication tokens, such as JWT access and refresh tokens, resulting in a CVSS score of 7.0 (HIGH) due to its network attack vector and high confidentiality impact. There is currently no evidence of active exploitation, nor are public exploit codes or significant community discussion available for this vulnerability.

Impacted Technologies

VendorProductVersion(s)CPE
Range not provided by sourceCPE matchmatch criteria
cpe:2.3:a:langflow:langflow:-:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 4.0

7.0HIGH

CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:H/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X

Attack Vector
NETWORK
Attack Complexity
LOW
Attack Requirements
NONE
Privileges Required
LOW
User Interaction
PASSIVE
VS Confidentiality
HIGH
VS Integrity
LOW
VS Availability
NONE
SS Confidentiality
NONE
SS Integrity
NONE
SS Availability
NONE
Exploit Maturity
NOT_DEFINED
CvssVersion
4.0

Exploit Intelligence

EPSS Score
0.15%
Probability of exploitation in next 30 days
EPSS Percentile
5.1%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15
This CVE's current EPSS score of 0.0015 is in the 3rd percentile among its peer group of 15,239 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Patches (3)

3cxvendor investigatingvia llm_extracted
burp_suitevendor investigatingvia llm_extracted
proxmoxvendor investigatingvia llm_extracted

Vendor Advisories (3)

proxmoxllm-proxmox-4f5778bbe1c85957HIGH

Langflow - Stored XSS via Malicious SVG Upload

Mar 27, 2026
3cxllm-3cx-de388835442eb54fHIGH

Langflow - Stored XSS via Malicious SVG Upload

Mar 27, 2026
burp_suitellm-burp_suite-e2bd26cfc8b28a55HIGH

Langflow - Stored XSS via Malicious SVG Upload

Mar 27, 2026

References

tenable.com / security/research/tra-2026-25
Vendor Advisory