CVE Database
/

CVE-2026-23769

Back to search

CVE-2026-23769

Published: Jan 16, 2026

Modified: Jan 16, 2026

PUBLISHED

Description

lucy-xss-filter before commit e5826c0 allows an attacker to execute malicious JavaScript due to improper sanitization caused by misconfigured default superset rule files.

VendorProductVersions

NAVER

lucy-xss-filter

unaffected
e5826c0d26b4f546955279767bbe94e5c7ed3f15

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now