CVE-2026-65636 | ufirstgroup ymlr up to 5.1.5 Ymlr module lib/ymlr.ex Elixir.Ymlr.document!/2/Elixir.Ymlr.documents!/2 crlf injection

SecurityVulns

A vulnerability was found in ufirstgroup ymlr up to 5.1.5. It has been classified as critical. This impacts the function Elixir.Ymlr.document!/2/Elixir.Ymlr.documents!/2 of the file lib/ymlr.ex of the component Ymlr module. This manipulation causes crlf injection.

This vulnerability is registered as CVE-2026-65636. Remote exploitation of the attack is possible. No exploit is available.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More