CVE-2026-39400 | jhuckaby Cronicle up to 0.9.110 Job Details Page create_events cross site scripting (GHSA-36q6-pwxv-j545 / EUVD-2026-19923)
A vulnerability classified as problematic has been found in jhuckaby Cronicle up to 0.9.110. This affects the function create_events of the component Job Details Page. Performing a manipulation results in cross site scripting.
This vulnerability is known as CVE-2026-39400. Remote exploitation of the attack is possible. No exploit is available.
It is recommended to upgrade the affected component.