Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
No reference.
Thu, 22 Jan 2026 23:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The built-in XY Chart plugin is vulnerable to a DOM XSS vulnerability. A user with Editor permissions is able to modify such a panel in order to make it execute arbitrary JavaScript. | This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| Weaknesses | CWE-79 | |
| References |
|
|
| Metrics |
cvssV3_1
|
Mon, 19 Jan 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sick Ag
Sick Ag incoming Goods Suite |
|
| Vendors & Products |
Sick Ag
Sick Ag incoming Goods Suite |
Thu, 15 Jan 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 15 Jan 2026 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The built-in XY Chart plugin is vulnerable to a DOM XSS vulnerability. A user with Editor permissions is able to modify such a panel in order to make it execute arbitrary JavaScript. | |
| Weaknesses | CWE-79 | |
| References |
|
|
| Metrics |
cvssV3_1
|
Status: REJECTED
Assigner: SICK AG
Published:
Updated: 2026-01-22T17:03:46.788Z
Reserved: 2026-01-08T09:59:06.197Z
Link: CVE-2026-22637
Updated:
Status : Rejected
Published: 2026-01-15T13:16:05.107
Modified: 2026-01-22T17:16:36.390
Link: CVE-2026-22637
No data.
OpenCVE Enrichment
Updated: 2026-01-19T09:20:47Z
No weakness.