CVE-2026-62928: Xing Inc Xing Cptrans-Me-X

Critical severity, CVSS 9.3. EPSS: 2% chance of exploitation in the next 30 days.

XING CPTrans-ME-X contains an OS Command Injection (CWE-78). Unauthenticated OS command may be injected.

Affected products

  • Xing Inc Xing Cptrans-Me-X: before 1.8.1.17 (fixed in 1.8.1.17)

Published 2026-09-04. Last modified 2026-09-08.