CVE-2026-100172: CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in ail project ail framework
The AIL Framework (ail-project/ail-framework) contains a stored cross-site scripting (XSS) vulnerability in two Jinja2 templates that render popovers for matched, tracked, or tagged content: var/www/templates/chats_explorer/block_message.html and var/www/templates/objects/item/show_item.html. In both templates, dynamic values associated with this content, including icon color, icon style, icon glyph, subtype, identifier, name, description, and matched value, are interpolated directly into the data-content HTML attribute of Bootstrap popover elements without appropriate output encoding. Because the popovers are configured with data-html="true", the content is interpreted as HTML in the victim's browser. An authenticated attacker who can influence matched, tracked, or tagged content may inject arbitrary HTML or JavaScript into these values. When a victim displays the affected popover, the injected markup may execute in the victim's session, potentially enabling data exfiltration or actions with the victim's privileges. The vulnerability is classified as stored XSS because the malicious payload can persist in the affected match, tracking, or tag-related data and be delivered to users who view the affected content.
AI Analysis
Technical Summary
The AIL Framework contains a stored XSS vulnerability in the templates var/www/templates/chats_explorer/block_message.html and var/www/templates/objects/item/show_item.html. These templates render popovers using Bootstrap with data-html="true" and interpolate dynamic values such as icon color, style, glyph, subtype, identifier, name, description, and matched value directly into the data-content attribute without proper output encoding. An authenticated attacker able to influence matched, tracked, or tagged content can inject arbitrary HTML or JavaScript that persists and executes in other users' browsers when they view the popovers, enabling potential data theft or actions under the victim's session.
Potential Impact
An authenticated attacker can inject persistent malicious scripts into popover content that executes in the context of other users' browsers. This can lead to data exfiltration or unauthorized actions performed with the victim's privileges. The vulnerability affects the confidentiality and integrity of user sessions within the AIL Framework application.
Mitigation Recommendations
Patch status is not yet confirmed — check the vendor advisory for current remediation guidance. Until a fix is available, restrict or carefully validate user input that influences matched, tracked, or tagged content rendered in popovers. Consider disabling HTML rendering in popovers or applying proper output encoding to dynamic values in the affected templates to prevent script injection.
CVE-2026-100172: CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in ail project ail framework
Description
The AIL Framework (ail-project/ail-framework) contains a stored cross-site scripting (XSS) vulnerability in two Jinja2 templates that render popovers for matched, tracked, or tagged content: var/www/templates/chats_explorer/block_message.html and var/www/templates/objects/item/show_item.html. In both templates, dynamic values associated with this content, including icon color, icon style, icon glyph, subtype, identifier, name, description, and matched value, are interpolated directly into the data-content HTML attribute of Bootstrap popover elements without appropriate output encoding. Because the popovers are configured with data-html="true", the content is interpreted as HTML in the victim's browser. An authenticated attacker who can influence matched, tracked, or tagged content may inject arbitrary HTML or JavaScript into these values. When a victim displays the affected popover, the injected markup may execute in the victim's session, potentially enabling data exfiltration or actions with the victim's privileges. The vulnerability is classified as stored XSS because the malicious payload can persist in the affected match, tracking, or tag-related data and be delivered to users who view the affected content.
CVSS v4.0
Score 8.5high
Affected software
ail project
ail framework
Run on your own infrastructure? Check whether these packages are installed with threat-finder — our free open-source scanner.
Weaknesses
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
The AIL Framework contains a stored XSS vulnerability in the templates var/www/templates/chats_explorer/block_message.html and var/www/templates/objects/item/show_item.html. These templates render popovers using Bootstrap with data-html="true" and interpolate dynamic values such as icon color, style, glyph, subtype, identifier, name, description, and matched value directly into the data-content attribute without proper output encoding. An authenticated attacker able to influence matched, tracked, or tagged content can inject arbitrary HTML or JavaScript that persists and executes in other users' browsers when they view the popovers, enabling potential data theft or actions under the victim's session.
Potential Impact
An authenticated attacker can inject persistent malicious scripts into popover content that executes in the context of other users' browsers. This can lead to data exfiltration or unauthorized actions performed with the victim's privileges. The vulnerability affects the confidentiality and integrity of user sessions within the AIL Framework application.
Mitigation Recommendations
Patch status is not yet confirmed — check the vendor advisory for current remediation guidance. Until a fix is available, restrict or carefully validate user input that influences matched, tracked, or tagged content rendered in popovers. Consider disabling HTML rendering in popovers or applying proper output encoding to dynamic values in the affected templates to prevent script injection.
Technical Details
- Data Version
- 5.2
- Assigner Short Name
- CIRCL
- Date Reserved
- 2026-09-25T13:13:52.747Z
- Cvss Version
- 4.0
- State
- PUBLISHED
Threat ID: 6ab67829f7a7c54106d2774b
Added to database: 09/25/2026, 13:33:29 UTC
Last enriched: 09/25/2026, 13:47:39 UTC
Last updated: 09/26/2026, 03:40:04 UTC
Views: 15
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
External Links
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.