CVE-2022-50952: Banco De Guayaquil Banco Guayaquil

Medium severity, CVSS 6.4. EPSS: 0.3% chance of exploitation in the next 30 days.

Banco Guayaquil 8.0.0 mobile iOS application contains a persistent cross-site scripting vulnerability in the TextBox Name Profile input. Attackers can inject malicious script code through a POST request that executes on application review without user interaction.

Affected products

Published 2026-02-01. Last modified 2026-06-17.