CVE-2026-22919
An attacker with administrative access may inject malicious content into the login page, potentially enabling cross-site
An attacker with administrative access may inject malicious content into the login page, potentially enabling cross-site scripting (XSS) attacks, leading to the extraction of sensitive data.
LOW · CVSS 3.8
EPSS 0.00018
Monitor
- No active-exploitation, high-EPSS, or public-exploit signals - routine patching cadence
Sigma rules0
YARA rules0