
CVE-2026-3319 Reflected Cross-Site Scripting (XSS) in the latest demo version of the Cradle eCommerce platform. User-controlled input is insecurely reflected in the HTML output in th… https://www.cve.org/CVERecord?id=CVE-2026-3319
Post summary
CVE-2026-3319 is a reflected XSS flaw in the demo version of the Cradle eCommerce platform, where user-controlled input is improperly reflected into HTML output.
