
CVE-2026-1440 Reflected Cross-Site Scripting (XSS) vulnerability in the Graylog Web Interface console, version 2.2.3, caused by a lack of proper sanitization and escaping in HTML out… https://www.cve.org/CVERecord?id=CVE-2026-1440
Post summary
A brief disclosure of CVE‑2026‑1440, a reflected XSS flaw in Graylog 2.2.3 due to improper sanitization, with no PoC, exploit, patch, or evidence of active exploitation provided.
