CVE-2026-83605 | xmldom up to 0.8.13/0.9.10/0.6.0 Attribute Element.setAttribute Name cross site scripting

SecurityVulns

A vulnerability was found in xmldom up to 0.8.13/0.9.10/0.6.0. It has been rated as problematic. Impacted is the function Element.setAttribute of the component Attribute Handler. Performing a manipulation of the argument Name results in cross site scripting.

This vulnerability is reported as CVE-2026-83605. The attack is possible to be carried out remotely. No exploit exists.

Upgrading the affected component is advised.VulDB Recent EntriesRead More