CVE-2026-33525 | Authelia 4.39.15 Cookie langauge cross site scripting (GHSA-gmfg-3v4q-9qr4)
A vulnerability described as problematic has been identified in Authelia 4.39.15. This vulnerability affects unknown code of the component Cookie Handler. Such manipulation of the argument langauge leads to cross site scripting.
This vulnerability is listed as CVE-2026-33525. The attack must be carried out from within the local network. There is no available exploit.
Upgrading the affected component is recommended.