EIP-2026-106272
PRE-CVECubeCart 3.0.x - Multiple Input Validation Vulnerabilities
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-106272. PoCs published by rgod.
AI-analyzed exploit summary The exploit demonstrates multiple XSS vulnerabilities in CubeCart by injecting malicious scripts into the 'file', 'x', 'y', and 'email' parameters. These vulnerabilities arise due to insufficient input sanitization, allowing arbitrary JavaScript execution in the context of the victim's browser.
Description
CubeCart 3.0.x - Multiple Input Validation Vulnerabilities
Exploits (1)
The exploit demonstrates multiple XSS vulnerabilities in CubeCart by injecting malicious scripts into the 'file', 'x', 'y', and 'email' parameters. These vulnerabilities arise due to insufficient input sanitization, allowing arbitrary JavaScript execution in the context of the victim's browser.