CVE-2026-90567 UNKNOWN

CVE-2026-90567

Published: 2026-09-13

Description

A security vulnerability has been detected in quequnlong shiyi-blog up to 1.2.1. Affected by this issue is the function highlightKeyword of the file blog-web/src/components/Search/index.vue of the component Search. The manipulation of the argument title/summary leads to cross site scripting. The attack can be initiated remotely. The project was informed of the problem early through an issue report.

AI Intelligence Brief

AI Intelligence

Analyzing vulnerability vectors…