
CVE-2026-40284 WeGIA is a web manager for charitable institutions. In versions prior to 3.6.10, a Stored Cross-Site Scripting (XSS) vulnerability allows an authenticated user to inj… https://www.cve.org/CVERecord?id=CVE-2026-40284
Post summary
The CVE-2026-40284 vulnerability is a stored XSS that affects WeGIA versions before 3.6.10, with no evidence of a PoC, exploit tool, active attacks, or explicit patch details beyond the version note.

