
CVE-2026-36766 Multiple authenticated cross-site scripting (XSS) vulnerabilities in the XssHttpServletRequestWrapper class of shopizer v3.2.5 allows attackers to execute arbitrary w… https://www.cve.org/CVERecord?id=CVE-2026-36766
Post summary
The post announces CVE-2026-36766, detailing multiple authenticated XSS vulnerabilities in shopizer v3.2.5 with no mention of PoC, exploitation, or remediation.

