CVE-2026-49436 | Kovah LinkAce up to 2.5.6 Bulk Link API endpoint /api/v2/bulk/links cross site scripting
A vulnerability described as problematic has been identified in Kovah LinkAce up to 2.5.6. Affected is an unknown function of the file /api/v2/bulk/links of the component Bulk Link API endpoint. Such manipulation leads to cross site scripting.
This vulnerability is documented as CVE-2026-49436. The attack can be executed remotely. There is not any exploit available.
Upgrading the affected component is recommended.VulDB Recent EntriesRead More