
CVE-2026-41469 Beghelli Sicuro24 SicuroWeb does not enforce a Content Security Policy, allowing unrestricted loading of external JavaScript resources from attacker-controlled origin… https://www.cve.org/CVERecord?id=CVE-2026-41469
Post summary
Beghelli's SicuroWeb fails to enforce a Content Security Policy, enabling unauthenticated loading of JavaScript from attacker-controlled origins; no PoC, exploit, or patch information is provided.

