CVE-2026-48167 | filamentphp filament up to 4.11.4/5.6.4 ImageColumn/ImageEntry cross site scripting (GHSA-3fc8-8hp6-6jr4)
A vulnerability, which was classified as problematic, has been found in filamentphp filament up to 4.11.4/5.6.4. Affected by this issue is some unknown functionality of the component ImageColumn/ImageEntry. This manipulation causes cross site scripting.
This vulnerability is registered as CVE-2026-48167. Remote exploitation of the attack is possible. No exploit is available.
It is advisable to upgrade the affected component.VulDB Recent EntriesRead More