Threats Tagged 'cve-2026-105950'
View all threats tagged with 'cve-2026-105950'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-105950'
Click on any threat for detailed analysis and mitigation recommendations
0 A cross-site scripting (XSS) vulnerability exists in getformwork formwork up to version 2.3.12 in the DomSanitizer::sanitizeNodeAttribute function within the URI Sanitizer component. This vulnerability allows remote attackers to manipulate the formaction argument, potentially leading to XSS attacks. The issue is addressed by upgrading to version 2.3.13. Join the discussion | GCVE Database | 10/06/2026, 18:31:32 UTC Added: 10/06/2026, 21:41:59 UTC |
0 A security vulnerability has been detected in getformwork formwork up to 2.3.12. Impacted is the function DomSanitizer::sanitizeNodeAttribute of the file formwork/src/Sanitizer/DomSanitizer.php of the component URI Sanitizer. Such manipulation of the argument formaction leads to cross site scripting. The attack may be launched remotely. Upgrading to version 2.3.13 is recommended to address this issue. The name of the patch is 729701e59c5886685c5a1d477bdc3035e41f18b1. Upgrading the affected component is advised. Join the discussion | CVE Database V5 | 10/06/2026, 15:30:18 UTC Added: 10/06/2026, 15:49:10 UTC |
Showing 1 to 2 of 2 results