Threats Tagged 'ghsa-465g-4q99-5x86'
View all threats tagged with 'ghsa-465g-4q99-5x86'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'ghsa-465g-4q99-5x86'
Click on any threat for detailed analysis and mitigation recommendations
NukeViet: Multiple Anti-XSS Filter Bypasses Leading to Stored XSS in News Module (CVE-2026-54064)CVE-2026-54064 0 NukeViet versions prior to 4.6.00 contain multiple filter bypasses in the News module's input sanitization, allowing authenticated users with news-posting permissions to inject stored cross-site scripting (XSS) payloads. The vulnerabilities arise from improper filtering of event handler attributes and incomplete decoding of HTML entities, enabling persistent JavaScript execution in any visitor's browser. This can lead to session hijacking, credential theft, and privilege escalation. A patch has been committed that properly strips control characters and decimal HTML entities to prevent these bypasses. No workarounds exist other than updating to the fixed version. Join the discussion | GCVE Database | 07/13/2026, 17:54:08 UTC Added: 07/14/2026, 09:21:58 UTC |
Showing 1 to 1 of 1 result