
CVE-2026-1438 Reflected Cross-Site Scripting (XSS) vulnerability in the Graylog Web Interface console, version 2.2.3, caused by a lack of proper sanitization and escaping in HTML out… https://www.cve.org/CVERecord?id=CVE-2026-1438
Post summary
A new CVE-2026-1438 reflects a XSS flaw in Graylog 2.2.3, with basic technical details provided but no evidence of exploitation or available patches.
