
CVE-2026-36358 Cross Site Scripting vulnerability in Juzaweb CMS v.5.0.0 allows a remote attacker via execute arbitrary code via a crafted script to the Add Banner Ads function https://www.cve.org/CVERecord?id=CVE-2026-36358
Post summary
The text discloses a cross‑site scripting flaw in Juzaweb CMS v5.0.0 that permits arbitrary code execution through a crafted script targeting the Add Banner Ads function.

