Vulnerabilities > Algernon Project
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-05-31 | CVE-2023-26131 | Cross-site Scripting vulnerability in Algernon Project Algernon All versions of the package github.com/xyproto/algernon/engine; all versions of the package github.com/xyproto/algernon/themes are vulnerable to Cross-site Scripting (XSS) via the themes.NoPage(filename, theme) function due to improper user input sanitization. | 6.1 |