MEDIUM 4.8 NVD
CVE-2026-85541
DreamMaker developed by Interinfo has a Reflected Cross-site Scripting vulnerability. Authenticated remote attackers can execute arbitrary JavaScript codes in u
DreamMaker developed by Interinfo has a Reflected Cross-site Scripting vulnerability. Authenticated remote attackers can execute arbitrary JavaScript codes in user's browser via a malicious website.
References
- https://www.twcert.org.tw/en/cp-139-11184-9ad14-2.html
- https://www.twcert.org.tw/tw/cp-132-11183-06a5e-1.html
This medium severity vulnerability with a CVSS score of 4.8 was published on 2026-09-04 via NVD.
vulnfeed aggregates 8217 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.