
🚨*CVE* CVE-2026-40927 Docmost is open-source collaborative wiki and documentation software. Prior to 0.80.0, when leaving a comment on a page, it is possible to include a JavaScript URI as… https://www.cve.org/CVERecord?id=CVE-2026-40927 ----- Traducción: CVE-2026-40927 Doc… http://infoflow.cloud`
Post summary
The tweet points out that Docmost versions before 0.80.0 allow JavaScript URIs in comments, enabling XSS, and references CVE‑2026‑40927.

