PT-2026-82556 · Netron+1 · Neutron

·

CVE-2026-79719

·

Published

2026-08-27

·

Updated

2026-08-27

CVSS v4.0

6.8

Medium

VectorAV:L/AC:L/AT:N/PR:N/UI:P/VC:H/VI:N/VA:N/SC:L/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions Netron versions prior to 9.1.3
Description The desktop application contains a Reflected Cross-Site Scripting (XSS) flaw caused by unsanitized node names. This allows an attacker to hide specific nodes, conduct port scanning, or leverage a Chrome n-day to achieve Remote Code Execution (RCE).
Recommendations Update to version 9.1.3 or later.

Exploit

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-79719

Affected Products

Neutron