CVE-2026-50190 | Shaarli up to 0.16.2 BookmarkListController.php getTitle cross site scripting (EUVD-2026-63551)
A vulnerability was found in Shaarli up to 0.16.2. It has been classified as problematic. The affected element is the function getTitle of the file application/front/controller/visitor/BookmarkListController.php. The manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2026-50190. It is possible to initiate the attack remotely. There is no exploit available.
Upgrading the affected component is recommended.VulDB Recent EntriesRead More