Vulnogram 1.0.0 contains a stored cross-site scripting vulnerability in comment hypertext handling that allows attackers to inject malicious scripts. Remote attackers can inject XSS payloads through comments to execute arbitrary JavaScript in victims' browsers.
Metrics
Affected Vendors & Products
References
History
Mon, 16 Mar 2026 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Vulnogram
Vulnogram vulnogram |
|
| Vendors & Products |
Vulnogram
Vulnogram vulnogram |
Sat, 14 Mar 2026 22:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Vulnogram 1.0.0 contains a stored cross-site scripting vulnerability in comment hypertext handling that allows attackers to inject malicious scripts. Remote attackers can inject XSS payloads through comments to execute arbitrary JavaScript in victims' browsers. | |
| Title | Vulnogram - Stored Cross-Site Scripting via Comment Hypertext | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-03-14T21:44:07.130Z
Reserved: 2026-03-14T21:26:03.800Z
Link: CVE-2026-32774
No data.
No data.
No data.