CVE-2026-36748

Blog Archive Tag

the exploit blog logo
The Exploit: Penetration Testing Insights From The Frontlines
CVE-2026-36748
  • CVE-2026-36748: XSS in Rock RMS Leads to Privilege Escalation

    CVE-2026-36748: XSS in Rock RMS Leads to Privilege Escalation

    By Jason Taylor Raxis Lead Pentester Jason Taylor recently discovered CVE-2026-36748, a high-risk XSS vulnerability in Rock RMS that allows privilege escalation to admin. June 1, 2026