CVE-2026-48167 | filamentphp filament up to 4.11.4/5.6.4 ImageColumn/ImageEntry cross site scripting (GHSA-3fc8-8hp6-6jr4)

SecurityVulns

A vulnerability, which was classified as problematic, has been found in filamentphp filament up to 4.11.4/5.6.4. Affected by this issue is some unknown functionality of the component ImageColumn/ImageEntry. This manipulation causes cross site scripting.

This vulnerability is registered as CVE-2026-48167. Remote exploitation of the attack is possible. No exploit is available.

It is advisable to upgrade the affected component.VulDB Recent EntriesRead More