nova-a CVE Vulnerabilities & CVE List (1)

Products (CPE): — CVEs: 1

nova-a vulnerability overview

This page aggregates publicly disclosed CVE and security risk information related to nova-a, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.

Vulnerability distribution trend (last 24 months)

Showing 11 of 1 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2026-1469 Stored Cross-Site Scripting (XSS) in RLE NOVA's PlanManager. This vulnerability allows an attacker to execute JavaScript code in the victim's browser by injecting malicious payload through the ‘comment’ and ‘brand’ parameters in ‘/index.php’. The payload is stored by the application and subsequently displayed without proper sanitization when other users access it. This vulnerability can be exploited to steal sensitive user data, such as session cookies, or to perform actions on behalf of the use [email protected] 6.9 0.05% 2026-01-29 2026-06-17
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence