CVE-2026-92214

A flaw has been found in a2ui-project a2ui up to 0.10.7. Affected is an unknown function of the file samples/community/client/angular/projects/a2a-chat-canvas/src/lib/services/sanitizer-markdown-renderer-service.ts of the component a2a-chat-canvas. Executing a manipulation can lead to cross site scripting. The attack may be performed from remote.
Configurations

No configuration.

History

No history.

Information

Published : 2026-09-16 02:17

Updated : 2026-09-16 02:17


NVD link : CVE-2026-92214

Mitre link : CVE-2026-92214

CVE.ORG link : CVE-2026-92214


JSON object : View

Products Affected

No product.

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

CWE-94

Improper Control of Generation of Code ('Code Injection')