Feed/CVE-2026-36162
CVE-2026-36162MEDIUMCVSS 5.4

CVE-2026-36162

Published Jul 7, 2026·Updated Jul 9, 2026

NVD Description

An authenticated stored cross-site scripting (XSS) vulnerability in the Upload File Shares API of LiquidFiles v4.2.7 allows attackers to execute arbitrary Javascript or HTML via injecting a crafted payload into the Name parameter.

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free