CVE-2026-27502 — SVXportal version 2.5 and prior contain a reflected cross-site scripting vulnerability in log.php via the search query parameter. The application embeds the unsanitized parameter value directly into a — CVE Database · The Intelligence Room