Security Advisory
CVE-2026-31382
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
The error_description parameter is vulnerable to Reflected XSS. An attacker can bypass the domain's WAF using a Safari-specific onpagereveal payload.