Feed/CVE-2026-10769
CVE-2026-10769MEDIUMCVSS 5.4

CVE-2026-10769

Published Jul 10, 2026·Updated Aug 6, 2026

NVD Description

Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability in Drupal Commerce Core allows Stored XSS. This issue affects Commerce Core versions: from 3.3.0 to 3.3.6.

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free