
CVE-2026-34822 Endian Firewall version 3.3.25 and prior allow stored cross-site scripting (XSS) via the new_cert_name parameter to /manage/ca/certificate/. An authenticated attacker… https://www.cve.org/CVERecord?id=CVE-2026-34822
Post summary
CVE-2026-34822 is a stored XSS vulnerability in Endian Firewall 3.3.25 and prior, disclosed with technical details but no mention of PoC, exploitation, or patch.
