CVE-2026-94448 | Google html/template up to 1.26.8/1.27.1 Template Literal Expression cross site scripting

SecurityVulns

A vulnerability labeled as problematic has been found in Google html and template up to 1.26.8/1.27.1. This affects an unknown function of the component Template Literal Expression. The manipulation results in cross site scripting.

This vulnerability was named CVE-2026-94448. The attack may be performed from remote. There is no available exploit.

The affected component should be upgraded.VulDB Recent EntriesRead More