
CVE-2026-5301 Stored XSS in log viewer in CoolerControl/coolercontrol-ui <4.0.0 allows unauthenticated attackers to take over the service via malicious JavaScript in poisoned log ent… https://www.cve.org/CVERecord?id=CVE-2026-5301
Post summary
The CVE‑2026‑5301 entry explains a stored XSS vulnerability in CoolerControl’s log viewer that could let unauthenticated attackers execute malicious JavaScript and take over the service.
