CVE-2026-47079 | joshnuss xml_builder up to 2.4.0 lib/xml_builder.ex cross site scripting

SecurityVulns

A vulnerability categorized as problematic has been discovered in joshnuss xml_builder up to 2.4.0. Impacted is the function XmlBuilder.generate/XmlBuilder.escape_string/XmlBuilder.escape_entity of the file lib/xml_builder.ex. The manipulation results in cross site scripting.

This vulnerability is known as CVE-2026-47079. It is possible to launch the attack remotely. No exploit is available.

It is advisable to upgrade the affected component.VulDB Recent EntriesRead More