CVE-2026-32774

Vulnogram 1.0.0 contains a stored cross-site scripting vulnerability in comment hypertext handling that allows attackers to inject malicious scripts. Remote attackers can inject XSS payloads through comments to execute arbitrary JavaScript in victims' browsers.
Configurations

Configuration 1 (hide)

cpe:2.3:a:vulnogram:vulnogram:1.0.0:beta1:*:*:*:*:*:*

History

No history.

Information

Published : 2026-03-16 14:19

Updated : 2026-06-17 10:36


NVD link : CVE-2026-32774

Mitre link : CVE-2026-32774

CVE.ORG link : CVE-2026-32774


JSON object : View

Products Affected

vulnogram

  • vulnogram
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')