Vulnerability Description
NSP is vulnerable to a stored XSS due to insufficient validation or encoding of user-controlled input in a workflow application. An authenticated attacker with access to the workflow application could embed harmful code that runs when another user views the content.
CVSS Score
MEDIUM
Related Weaknesses (CWE)
References
FAQ
What is CVE-2026-40464?
CVE-2026-40464 is a vulnerability with a CVSS score of 5.4 (MEDIUM). NSP is vulnerable to a stored XSS due to insufficient validation or encoding of user-controlled input in a workflow application. An authenticated attacker with access to the workflow application could...
How severe is CVE-2026-40464?
CVE-2026-40464 has been rated MEDIUM with a CVSS base score of 5.4/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-40464?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.