
CVE-2026-22524 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in themepassion Legacy Admin legacy-admin allows Reflected XSS.This… https://www.cve.org/CVERecord?id=CVE-2026-22524
Post summary
The tweet notes CVE‑2026‑22524, describing it as a reflected XSS flaw in themepassion’s Legacy Admin, but offers no PoC, exploit code, or mitigation details.
