CVE-2026-18957: Menulux Software Inc Menulux Portal
Medium severity, CVSS 5.4. EPSS: 0.2% chance of exploitation in the next 30 days.
Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Menulux Software Inc. Menulux Portal allows Stored XSS. This issue affects Menulux Portal: before 20260903211448.
Affected products
- Menulux Software Inc Menulux Portal: before 20260903211448 (fixed in 20260903211448)
Published 2026-09-04. Last modified 2026-09-08.