{"id":"CVE-2026-15552","title":"Enterprise Cloud Database developed by Ragic has a Stored Cross-Site Scripting vulnerability, allowing unauthenticated remote attackers to inject persistent JavaScript code executed in users' browsers upon page load.","summary":"Enterprise Cloud Database developed by Ragic has a Stored Cross-Site Scripting vulnerability, allowing unauthenticated remote attackers to inject persistent JavaScript code executed in users' browsers upon page load.","severity":"medium","cvss":6.1,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N","cwe":["CWE-79"],"published":"2026-07-13","updated":"2026-07-13","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-15552","references":[{"url":"https://www.twcert.org.tw/en/cp-139-11032-460c2-2.html","label":"twcert@cert.org.tw"},{"url":"https://www.twcert.org.tw/tw/cp-132-11031-eccb2-1.html","label":"twcert@cert.org.tw"}],"tags":["nvd"],"ingestedAt":"2026-07-13T04:24:09.686Z","epss":0.00341,"epssPercentile":0.2773,"slug":"CVE-2026-15552","body":"## Overview\n\nEnterprise Cloud Database developed by Ragic has a Stored Cross-Site Scripting vulnerability, allowing unauthenticated remote attackers to inject persistent JavaScript code executed in users' browsers upon page load.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"sunlit","depthScore":34,"depthScoreParts":{"impact":33.6,"likelihood":0.1,"exploitation":0,"ransomware":0},"changes":[]}