CVE-2026-105269: Satel Netco Design

Medium severity, CVSS 6.8. EPSS: 0.4% chance of exploitation in the next 30 days.

Satel Netco Design versions prior to v2.1.7 contains a stored cross site scripting vulnerability. An authenticated user with Network Operator privileges could store untrusted content that is rendered without adequate neutralization. Successful exploitation could allow script execution in another user's browser when the affected content is viewed.

Affected products

  • Satel Satel Netco Design: before v2.1.7 (fixed in v2.1.7)

Published 2026-10-08. Last modified 2026-10-09.