CVE-2026-73537
Cross-site scripting vulnerability exists in Miraikan Assist App. If this vulnerability is exploited, an arbitrary script may be executed in the browser component (WebView) running on the affected product, resulting in the displayed content being altered.
CSIRTS triage
- What
- A cross-site scripting vulnerability exists in the application.
- Who is affected
- Users of Miraikan Assist App.
- Urgency
- Low to moderate severity; no exploitation reported, but XSS can compromise user sessions.
- Action
- Contact JST or check for an available patch for Miraikan Assist App.
AI-assisted analysis generated from the source advisory — verify against the original.
⚡ Watch CVE-2026-73537
Get an email if CVE-2026-73537 is added to CISA KEV, gains public exploit code, or a new advisory cites it — max one per day, one-click unsubscribe.
Exploitation outlook
- Low exploitation risk0.19% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 8% of all EPSS-scored CVEs.
Advisory coverage (2)
- mediumCVE-2026-73537: Cross-site scripting vulnerability exists in Miraikan Assist App. If this vulnerability is exp…nvd · 2026-08-21
- unknownMiraikan Assist App vulnerable to cross-site scriptingjvn · 2026-08-21
External references
Embed the live status
— this badge updates automatically when the KEV or exploit status changes. How to embed it →
[](https://www.csirts.com/cve/CVE-2026-73537)