Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Tools/GitHubGitHub/lukasz-rybak/cve-2026-1434
Vulnerability AnalysisWeb Application ExploitationWeb SecurityLearning & EducationCurated Resources
GitHublukasz-rybak/cve-2026-1434

CVE-2026-1434

CVE-2026-1434 - Omega-PSIR is vulnerable to Reflected XSS via the lang parameter. An attacker can craft a...

View Repository
35 months agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

CVE-2026-1434: Omega-PSIR is vulnerable to Reflected XSS via the lang parameter. An attacker can craft a...

Overview

FieldDetails
CVE IDCVE-2026-1434
SeverityMEDIUM
AdvisoryN/A
Discovered byLukasz Rybak

Affected Products

See advisory for details.

CWE Classification

  • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Details

Omega-PSIR is vulnerable to Reflected XSS via the lang parameter. An attacker can craft a malicious URL that, when opened, causes arbitrary JavaScript to execute in the victim’s browser.

This issue was fixed in 4.6.7.

References

  • https://nvd.nist.gov/vuln/detail/CVE-2026-1434
  • https://cert.pl/posts/2026/02/CVE-2026-1434
  • https://www.omegapsir.io
  • https://github.com/advisories/GHSA-74gw-c73g-6fq2

Disclaimer

This CVE was responsibly disclosed following coordinated vulnerability disclosure practices. The information provided here is for educational and defensive purposes only.

Download Tool