Vulnerability PYSEC-2026-4002
Medium Risk
MEDIUM RISK
CVSS Score: 5.0
Score Range: 4.0–6.9
Medium severity vulnerabilities (CVSS 4.0–6.9). Important issues that meaningfully reduce security confidence.
1 month ago
August 27, 2026 at 05:20 PM UTC
No summary available
7.8.6 - 9.1.2
7.8.6 - 9.1.2
Details
Reflected XSS in Netron versions <=9.1.2 on desktop application through unsanitized node names allows an attacker to hide certain nodes, perform port scanning or abuse a Chrome n-day to achieve Remote Code Execution.
References
Related Vulnerabilities
Other vulnerabilities affecting the same packages
Medium Risk
1 month ago
No summary available
7.8.6 - 9.1.2 PYSEC-2026-3747
7.8.6 - 9.1.2 PYSEC-2026-3747
Medium Risk
1 month ago
No summary available
7.8.6 - 9.1.2 PYSEC-2026-4001
7.8.6 - 9.1.2 PYSEC-2026-4001
Impacted packages
Timeline
Published
1 month ago
August 27, 2026 at 05:20 PM UTC
Fixed (9.1.3)
3 months ago
June 27, 2026 at 05:19 PM UTC
Last Modified
5 hours ago
September 30, 2026 at 09:15 AM UTC