CVE-2026-8396: Netcad Software Inc Netgis

High severity, CVSS 7.5. EPSS: 0.4% chance of exploitation in the next 30 days.

Improper restriction of XML external entity reference vulnerability in Netcad Software Inc. NetGIS allows Serialized Data External Linking. This issue affects NetGIS: from 5.0.66 before 7.2.2.

Affected products

Published 2026-07-17. Last modified 2026-07-17.