
🚨*CVE* CVE-2026-40596 Mantis Bug Tracker (MantisBT) is an open source issue tracker. Versions 2.11.0 through 2.28.1 allow any authenticated user to inject arbitrary HTML by updating their … https://www.cve.org/CVERecord?id=CVE-2026-40596 ----- Traducción: CVE-2026-40596 Man… http://infoflow.cloud`
Post summary
The post announces CVE-2026-40596, detailing arbitrary HTML injection via authenticated users in MantisBT 2.11.0–2.28.1, and links to the official CVE record, but offers no PoC, exploit code, or patch information.


