CVE-2026-84695 | BookStackApp BookStack up to 26.05.3 Drawing Upload Endpoint cross site scripting

SecurityVulns

A vulnerability, which was classified as problematic, has been found in BookStackApp BookStack up to 26.05.3. This affects an unknown part of the component Drawing Upload Endpoint. This manipulation causes cross site scripting.

This vulnerability appears as CVE-2026-84695. The attack may be initiated remotely. There is no available exploit.

It is advisable to upgrade the affected component.VulDB Recent EntriesRead More