CVE-2026-11757

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in KA Informatics Technologies Ltd. Co. Bar Association Website allows Reflected XSS. This issue affects Bar Association Website: through 18092026.  NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

  • Published Sep 18, 2026
  • CVSS 6.1 medium
  • 0.2% chance of exploitation in the next 30 days (EPSS)
  • No fix is known yet

Affected software

CVE-2026-11757 at the National Vulnerability Database