Back to search
CVE-2026-23769
Published: Jan 16, 2026
Modified: Jan 16, 2026
PUBLISHED
Description
lucy-xss-filter before commit e5826c0 allows an attacker to execute malicious JavaScript due to improper sanitization caused by misconfigured default superset rule files.
| Vendor | Product | Versions |
|---|---|---|
NAVER | lucy-xss-filter | unaffected e5826c0d26b4f546955279767bbe94e5c7ed3f15 |
Weaknesses (CWE)
References
https://cve.naver.com/detail/cve-2026-23769.html
vendor-advisory
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now