CVE-2026-50040 | StoneFly Storage Concentrator prior 8.0.4.22/8.0.4.29 URL cross site scripting (icsa-26-181-06)
A vulnerability, which was classified as problematic, has been found in StoneFly Storage Concentrator and Storage Concentrator Virtual Machine. This issue affects some unknown processing of the component URL Handler. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2026-50040. The attack is possible to be carried out remotely. No exploit exists.
It is advisable to upgrade the affected component.VulDB Recent EntriesRead More