HIGH
Basamak Information Technology Consulting and Organization Trade Ltd. Co.
CVE published 2026-05-18
CVE-2026-7498
A stored cross-site scripting (XSS) vulnerability in DernekWeb, a web application developed by Basamak Information Technology Consulting and Organization Trade Ltd. Co., allows attackers to inject malicious scripts that persist and execute in victims' browsers. The vulnerability affects DernekWeb versions through 30122025. The CVSS 3.1 score of 8.8 reflects high impact across confidentiality, integrity, a [truncated]