CVE-2026-88261: Bizwell Xclick

Medium severity, CVSS 5.1. EPSS: 0.4% chance of exploitation in the next 30 days.

Improper input validation vulnerability in bizwell xClick allows Stored XSS. This issue affects xClick: R2, R3, and R3.1.

Affected products

  • Bizwell Xclick: version R2 only; version R3 only; version R3.1 only

Published 2026-09-15. Last modified 2026-09-18.