Threats Tagged 'cve-2026-93432'
View all threats tagged with 'cve-2026-93432'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-93432'
Click on any threat for detailed analysis and mitigation recommendations
0 A vulnerability in the Quarkus Qute template engine's {#eval} section helper causes it to omit the parent template's content type information when processing sub-templates. This omission bypasses standard escaping mechanisms, allowing untrusted data to be rendered as raw, unescaped text. The flaw can lead to Cross-Site Scripting (XSS) and JSON Injection, enabling remote attackers to execute arbitrary code in users' browsers or manipulate data. The issue primarily affects applications that process untrusted input within Qute templates. Mitigation is possible by replacing the vulnerable {#eval} section helper with the str:eval extension method. No official patch is explicitly stated in the advisory at this time. Join the discussion | GCVE Database | 09/18/2026, 17:53:19 UTC Added: 09/19/2026, 01:27:36 UTC |
0 A flaw was found in the Quarkus Qute template engine. When the {#eval} section helper processes a sub-template, it fails to pass the parent template's content type information. This bypasses standard escaping mechanisms, allowing untrusted data to be output as raw, unescaped text. This vulnerability can lead to Cross-Site Scripting (XSS) and JSON Injection, potentially allowing a remote attacker to execute arbitrary code in a user's browser or manipulate data. Join the discussion | CVE Database V5 | 09/18/2026, 17:53:19 UTC Added: 09/18/2026, 18:02:20 UTC |
Showing 1 to 2 of 2 results