CVE-2026-55891 | PrivateBin up to 2.0.4 JSON-LD Output lib/Controller.php Controller::_jsonld REQUEST_URI cross site scripting
A vulnerability, which was classified as problematic, has been found in PrivateBin up to 2.0.4. This affects the function Controller::_jsonld of the file lib/Controller.php of the component JSON-LD Output. This manipulation of the argument REQUEST_URI causes cross site scripting.
This vulnerability appears as CVE-2026-55891. The attack may be initiated remotely. There is no available exploit.
It is advisable to upgrade the affected component.VulDB Recent EntriesRead More