
CVE-2026-42451 Grimmory is a self-hosted digital library. Prior to version 2.3.1, a stored cross-site scripting (XSS) vulnerability in Grimmory's browser-based EPUB reader allows an… https://www.cve.org/CVERecord?id=CVE-2026-42451
Post summary
The text announces a stored XSS flaw (CVE-2026-42451) affecting Grimmory prior to version 2.3.1, with no evidence of exploitation or patch information.

