GHSA-mmxc-95ch-2j7c
HIGHCVE-2026-34748A stored Cross-site Scripting (XSS) vulnerability existed in the admin panel. An authenticated user with write access to a collection could save content that, when viewed by another user, would execute in their browser.
- Affected
- < 3.78.0
- Fixed in
- 3.78.0
- Weakness
- CWE-79
- Published
- 2026-04-01
- Source
- github