PT-2026-82557 · Neuron · Neutron

·

CVE-2026-79720

·

Published

2026-08-27

·

Updated

2026-09-02

CVSS v4.0

6.8

Medium

VectorAV:L/AC:L/AT:N/PR:N/UI:P/VC:H/VI:N/VA:N/SC:L/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions Netron versions prior to 9.1.3
Description The desktop application contains a Reflected Cross-Site Scripting (XSS) flaw caused by unsanitized node names. This allows an attacker to hide specific nodes, conduct port scanning, or leverage a Chrome n-day to achieve Remote Code Execution (RCE). Reflected XSS is a type of attack where a malicious script is reflected off a web application to the victim's browser.
Recommendations Update to version 9.1.3 or later.

Exploit

Fix

RCE

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-79720
PYSEC-2026-3747

Affected Products

Neutron