CVE-2026-25491 | Craft CMS up to 5.8.21 cross site scripting (GHSA-7pr4-wx9w-mqwr)
A vulnerability labeled as problematic has been found in Craft CMS up to 5.8.21. This vulnerability affects unknown code. Executing a manipulation can lead to cross site scripting.
This vulnerability is registered as CVE-2026-25491. It is possible to launch the attack remotely. No exploit is available.
The affected component should be upgraded.