CVE-2026-56127 | Netgate pfSense Plus/pfSense CE prior 26.07/2.9.0 Firewall Rule Description /firewall_rules_edit.php descr cross site scripting

SecurityVulns

A vulnerability has been found in Netgate pfSense Plus and pfSense CE and classified as problematic. Affected by this issue is some unknown functionality of the file /firewall_rules_edit.php of the component Firewall Rule Description. This manipulation of the argument descr causes cross site scripting.

This vulnerability appears as CVE-2026-56127. The attack may be initiated remotely. There is no available exploit.

The affected component should be upgraded.VulDB Recent EntriesRead More