CVE-2026-78615: WatchGuard Dimension
Medium severity, CVSS 4.6. EPSS: 0.5% chance of exploitation in the next 30 days.
A Reflected Cross-Site Scripting (XSS) vulnerability in WatchGuard Dimension's report detail page allows an attacker to execute arbitrary JavaScript in a authenticated user's browser with a specially crafted URL.
Affected products
- WatchGuard Dimension: from 2.0, before 2.3.1 (fixed in 2.3.1)
Published 2026-08-28. Last modified 2026-08-28.