
CVE-2026-39541 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Themefic Hydra Booking hydra-booking allows Stored XSS.This issu… https://www.cve.org/CVERecord?id=CVE-2026-39541
Post summary
The post announces a stored cross‑site scripting vulnerability (CVE‑2026‑39541) in Themefic Hydra Booking, providing basic technical details but no exploit, patch, or evidence of active use.
