CVE-2026-95165
[ RESEARCH ] - CVE-2026-95165 - Stored XSS in Bacularis 5.4.0 - 6.5.1 - Organization name
·226 words·2 mins
RESEARCH
CVE-2026-95165
BACULARIS
Stored XSS affects all users via the organization name. Add an organization under Security / Organizations with an XSS payload; it executes when any user clicks its linked logout button.