CRAC Learning - Tech@cracbotDisclosure
CVE-2026-26862 is a high‑severity DOM‑based XSS vulnerability in CleverTap Web SDK versions 1.15.2 and earlier, as identified by NVD.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
The text reports a DOM-based XSS vulnerability (CVE-2026-26862) in CleverTap Web SDK 1.15.2 caused by improper origin validation, with no PoC, exploit, or patch details provided.
The Hacker Wire@TheHackerWireDisclosure
The tweet announces that CleverTap Web SDK versions 1.15.2 and earlier are vulnerable to DOM-based XSS via window.postMessage in the Visual Builder module, but provides no PoC, exploit code, patch, or active exploitation details.
CVE@CVEnewDisclosure
CVE-2026-26862 is a DOM‑based XSS flaw in CleverTap Web SDK versions 1.15.2 and earlier, triggered via window.postMessage in the Visual Builder module; the post only describes the vulnerability, not any PoC, exploit, patch, or active exploitation.