云虫漏洞库

CVE-2026-18430 - HumHub 1.18.4 contains a stored cross-site scripting vulnerability in the comment-deletion notification flow. A Space administrator can delete another user's comment, choose to notify the original author, and place HTML/JavaScript in the deletion reason. - 漏洞详情

漏洞编号:CVE-2026-18430

风险等级:未知

漏洞来源:CVE

CVE 编号:CVE-2026-18430

CNNVD 编号:-

厂商/产品:- / -

影响范围:-

CWE:CWE-79

发布/更新时间:2026-08-19 / 2026-08-28

漏洞描述

HumHub 1.18.4 contains a stored cross-site scripting vulnerability in the comment-deletion notification flow. A Space administrator can delete another user's comment, choose to notify the original author, and place HTML/JavaScript in the deletion reason.

相关链接

相关漏洞

« 返回首页