CVE-2026-94448 | Google html/template up to 1.26.8/1.27.1 Template Literal Expression cross site scripting
A vulnerability labeled as problematic has been found in Google html and template up to 1.26.8/1.27.1. This affects an unknown function of the component Template Literal Expression. The manipulation results in cross site scripting.
This vulnerability was named CVE-2026-94448. The attack may be performed from remote. There is no available exploit.
The affected component should be upgraded.VulDB Recent EntriesRead More