CVE-2026-100507: If-So Dynamic Content Personalization
High severity, CVSS 7.1. EPSS: 0.2% chance of exploitation in the next 30 days.
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in If-So Dynamic Content If-So Dynamic Content Personalization if-so allows Reflected XSS.This issue affects If-So Dynamic Content Personalization: from n/a through 1.10.1.
Affected products
- If-So Dynamic Content If-So Dynamic Content Personalization: up to and including 1.10.1
Published 2026-09-30. Last modified 2026-10-07.