CVE-2026-103686 | rhukster dom-sanitizer up to 1.0.15 URL Validation src/DOMSanitizer.php isDangerousUrl cross site scripting (GHSA-mrpv-6×26-mf6c)

SecurityVulns

A vulnerability marked as problematic has been reported in rhukster dom-sanitizer up to 1.0.15. Impacted is the function DOMSanitizer::isDangerousUrl of the file src/DOMSanitizer.php of the component URL Validation. This manipulation causes cross site scripting.

The identification of this vulnerability is CVE-2026-103686. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.

It is suggested to upgrade the affected component.VulDB Recent EntriesRead More