CVE-2026-47080 | joshnuss XmlBuilder up to 2.4.0 lib/xml_builder.ex XmlBuilder.escape data xml injection

SecurityVulns

A vulnerability was found in joshnuss XmlBuilder up to 2.4.0. It has been classified as critical. This affects the function XmlBuilder.escape of the file lib/xml_builder.ex. Performing a manipulation of the argument data results in xml injection.

This vulnerability is reported as CVE-2026-47080. The attack is possible to be carried out remotely. No exploit exists.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More