
🚨*CVE* CVE-2026-35451 Twenty is an open source CRM. Prior to 1.20.6, a Stored Cross-Site Scripting (XSS) vulnerability exists in the BlockNote editor component. Due to a lack of protocol v… https://www.cve.org/CVERecord?id=CVE-2026-35451 ----- Traducción: CVE-2026-35451 Twe… http://infoflow.cloud`
Post summary
The tweet announces CVE‑2026‑35451, a stored XSS flaw in the BlockNote editor of the open‑source CRM Twenty, noting it is fixed in version 1.20.6 and linking to the CVE record.

