Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 28 Aug 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 28 Aug 2026 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Saitodev
Saitodev soy Calendar |
|
| Vendors & Products |
Saitodev
Saitodev soy Calendar |
Fri, 28 Aug 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Cross‑Site Scripting in SOY Calendar Allows Arbitrary Script Execution for Authenticated Users |
Fri, 28 Aug 2026 07:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SOY Calendar contains a cross-site scripting vulnerability. An arbitrary script may be executed on the web browser of the user who is logging in to the product. | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_0
|
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2026-08-28T06:10:58.005Z
Reserved: 2026-08-24T04:26:29.600Z
Link: CVE-2026-77838
Updated: 2026-08-28T16:12:40.643Z
Status : Deferred
Published: 2026-08-28T08:16:41.680
Modified: 2026-08-28T16:09:10.947
Link: CVE-2026-77838
No data.
OpenCVE Enrichment
Updated: 2026-08-28T16:12:51Z