CVE-2026-75933: Jet Admin

High severity, CVSS 7.3. EPSS: 0.4% chance of exploitation in the next 30 days.

Jet Admin allows an authenticated attacker to inject JavaScript via the sign-in page's scripts and styles option. Injected script is executed in the context of any visiting user's domain.

Affected products

Published 2026-08-21. Last modified 2026-08-26.