CVE-2026-39826 | html-template up to 1.25.9/1.26.2 on Go Type escape output

SecurityVulns

A vulnerability was found in html-template up to 1.25.9/1.26.2 on Go and classified as critical. This affects an unknown part. Such manipulation of the argument Type leads to escaping of output.

This vulnerability is documented as CVE-2026-39826. The attack can be executed remotely. There is not any exploit available.

It is suggested to upgrade the affected component.VulDB Recent EntriesRead More