mirror of
https://github.com/Astaruf/CVE-2026-40487
synced 2026-06-08 16:27:10 +00:00
Update README.md
This commit is contained in:
@@ -12,6 +12,8 @@ Discovered & reported by: [Astaruf](https://www.linkedin.com/in/lorenzoanastasi/
|
|||||||
|
|
||||||
Full writeup: [https://nstsec.com/en/posts/postiz-xss-cve-2026-40487/](https://nstsec.com/en/posts/postiz-xss-cve-2026-40487/)
|
Full writeup: [https://nstsec.com/en/posts/postiz-xss-cve-2026-40487/](https://nstsec.com/en/posts/postiz-xss-cve-2026-40487/)
|
||||||
|
|
||||||
|
NVD entry: [https://nvd.nist.gov/vuln/detail/CVE-2026-40487](https://nvd.nist.gov/vuln/detail/CVE-2026-40487)
|
||||||
|
|
||||||
GHSA entry: [https://github.com/gitroomhq/postiz-app/security/advisories/GHSA-44wg-r34q-hvfx](https://github.com/gitroomhq/postiz-app/security/advisories/GHSA-44wg-r34q-hvfx)
|
GHSA entry: [https://github.com/gitroomhq/postiz-app/security/advisories/GHSA-44wg-r34q-hvfx](https://github.com/gitroomhq/postiz-app/security/advisories/GHSA-44wg-r34q-hvfx)
|
||||||
|
|
||||||
CVE Record: [https://www.cve.org/CVERecord?id=CVE-2026-40487](https://www.cve.org/CVERecord?id=CVE-2026-40487)
|
CVE Record: [https://www.cve.org/CVERecord?id=CVE-2026-40487](https://www.cve.org/CVERecord?id=CVE-2026-40487)
|
||||||
@@ -288,6 +290,7 @@ Version 2.21.6 introduced three changes:
|
|||||||
|
|
||||||
- [Full Astaruf writeup](https://nstsec.com/en/posts/postiz-xss-cve-2026-40487/)
|
- [Full Astaruf writeup](https://nstsec.com/en/posts/postiz-xss-cve-2026-40487/)
|
||||||
- [CVE-2026-40487 - GHSA Security Advisory](https://github.com/gitroomhq/postiz-app/security/advisories)
|
- [CVE-2026-40487 - GHSA Security Advisory](https://github.com/gitroomhq/postiz-app/security/advisories)
|
||||||
|
- [CVE-2026-40487 - NVD entry](https://nvd.nist.gov/vuln/detail/CVE-2026-40487)
|
||||||
- [Postiz - Official Repository](https://github.com/gitroomhq/postiz-app)
|
- [Postiz - Official Repository](https://github.com/gitroomhq/postiz-app)
|
||||||
- [Postiz v2.21.6 - Fix Release](https://github.com/gitroomhq/postiz-app/releases/tag/v2.21.6)
|
- [Postiz v2.21.6 - Fix Release](https://github.com/gitroomhq/postiz-app/releases/tag/v2.21.6)
|
||||||
- [CWE-345: Insufficient Verification of Data Authenticity](https://cwe.mitre.org/data/definitions/345.html)
|
- [CWE-345: Insufficient Verification of Data Authenticity](https://cwe.mitre.org/data/definitions/345.html)
|
||||||
|
|||||||
Reference in New Issue
Block a user