megaphone
Update your Profile with your Support type to get your Support Type badge.
Nominate Your Peers for NetSuite Support Community's Choice of the Quarter! Submit your nomination today.
Expand your NetSuite knowledge by joining our Ask A Guru Live sessions. RSVP on this event now.
Don't miss out on our Question of the Week ! You only have until tomorrow, March 12, 2026, 2:00PM ET to comment your answers.
Now is the time to ask your NetSuite-savvy friends and colleagues to join the NetSuite Support Community! Refer now! Click here!
What Topic Should We Cover Next? Your idea could be our next feature—drop your suggestion now!
No Limits. Just possibilities. Join us for complimentary one-day events around the world and step into a future fueled by AI and limitless potential. Discover what's next at SuiteConnect Tour 2026.
Try Intelligent Payment Automation – Fee Free For Your First Month For more information, visit this thread.

Discussions

Stay up-to-date with the latest news from NetSuite. You’ll be in the know about how to connect with peers and take your business to new heights at our virtual, in-person, on demand events, and much more.
Now is the time to ask your NetSuite-savvy friends and colleagues to join the NetSuite Support Community! Refer now! Click here to watch and learn more!

Cross-site Scripting Issue

This notice is intended for customers with a SuiteCommerce Advanced site that may be vulnerable to Cross-site Scripting (XSS) issues. XSS vulnerability means malicious third parties could use your SuiteCommerce Advanced website to attack your users. If you are vulnerable, you must apply a patch to your SuiteCommerce Advanced code to protect your site.

Does this issue apply to my website?

If you are using an unpatched version of one of the below Suite Commerce Advanced (SCA) releases, you are vulnerable.

The SCA releases listed below contain an XSS vulnerability in the original template code. Once you install an SCA template, you likely modified it for your specific website needs; we have not evaluated your specific code to determine whether you have modified the original reference code in a way which would have previously resolved this vulnerability.

Regards,

@Robert Nedelkow-Oracle | NetSuite Support Community Administrator

Expand your NetSuite knowledge by joining this month's Ask A Guru Live about Advanced Accounting. RSVP Now

Howdy, Stranger!

Log In

To view full details, sign in.

Register

Don't have an account? Click here to get started!

Leaderboard

Community Whiz

Quarter 1 (Jan-Mar 2026)

This Week's Leaders

This Month's Leaders

All Time Leaders