zhitan-ems 1.0.0 is vulnerable to Cross Site Scripting (XSS) via SVG file upload through the /equipmentFile/upload endpoint.
CVE-2026-75307
NONE
EPSS 0.14%
Updated Sep 10, 2026
zhitan-ems
CVE Details
CVE ID
CVE-2026-75307
Published Date
Sep 10, 2026
Vendor
zhitan-ems
Severity
NONE
Exploit Prediction (EPSS)
Probability of Exploit
0.14%
Likelihood of exploitation in next 30 days
Percentile:
3.4th percentile (higher than 3.4% of all CVEs)
Standard patching cycle
Impact
Minimal impact
Source
View Advisory