Vulnogram 1.0.0 contains a stored cross-site scripting vulnerability in comment hypertext handling that allows attackers to inject malicious scripts. Remote attackers can inject XSS payloads through comments to execute arbitrary JavaScript in victims' browsers.
References
Configurations
History
No history.
Information
Published : 2026-03-16 14:19
Updated : 2026-06-17 10:36
NVD link : CVE-2026-32774
Mitre link : CVE-2026-32774
CVE.ORG link : CVE-2026-32774
JSON object : View
Products Affected
vulnogram
- vulnogram
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
