Vulnerabilities > Algernon Project

DATE CVE VULNERABILITY TITLE RISK
2023-05-31 CVE-2023-26131 Cross-site Scripting vulnerability in Algernon Project Algernon
All versions of the package github.com/xyproto/algernon/engine; all versions of the package github.com/xyproto/algernon/themes are vulnerable to Cross-site Scripting (XSS) via the themes.NoPage(filename, theme) function due to improper user input sanitization.
network
low complexity
algernon-project CWE-79
6.1