Beveiligingsadvies

CVE-2026-39826

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-05-07 19:41:19
Laatst bijgewerkt 2026-05-08 14:05:05
Toegewezen door Go
CVSS-score 6.1
Status PUBLISHED

Beschrijving

If a trusted template author were to write a <script> tag containing an empty 'type' attribute or a 'type' attribute with an ASCII whitespace, the execution of the template would incorrectly escape any data passed into the <script> block.