CVE-2026-18986 | Drupal Entity Browser up to 2.15.x cross site scripting

SecurityVulns

A vulnerability was found in Drupal Entity Browser up to 2.15.x and classified as problematic. Affected is an unknown function. Executing a manipulation can lead to cross site scripting.

This vulnerability is tracked as CVE-2026-18986. The attack can be launched remotely. No exploit exists.

It is suggested to upgrade the affected component.VulDB Recent EntriesRead More