
🚨 CVE-2026-5615 - medium 🚨 VvvebJs <= 2.0.5 - Cross-Site Scripting > Givanz Vvvebjs <= 2.0.5 contains a stored XSS caused by manipulation of the "uploadAl... 👾 https://cloud.projectdiscovery.io/library/CVE-2026-5615 @pdnuclei #NucleiTemplates #cve
Post summary
The post introduces CVE‑2026‑5615 as a medium‑severity stored XSS in VvvebJs, shares a Nuclei template link as a PoC, but offers no evidence of active exploitation or patch availability.



