
CVE-2026-24050 Zulip is an open-source team collaboration tool. From 5.0 to before 11.5, some administrative actions on the user profile were susceptible to stored XSS in group name… https://www.cve.org/CVERecord?id=CVE-2026-24050
Post summary
The CVE describes a stored XSS vulnerability in Zulip’s admin user profile actions, affecting versions 5.0 to before 11.5, with no exploit details or patch information provided.
