CVE-2026-108259 | tinacms Tina up to 2.x Codegen index.ts code injection
A vulnerability identified as critical has been detected in tinacms Tina up to 2.x. Affected is an unknown function of the file packages/@tinacms/cli/src/next/codegen/index.ts of the component Codegen. Performing a manipulation results in code injection.
This vulnerability is cataloged as CVE-2026-108259. It is possible to initiate the attack remotely. There is no exploit available.
You should upgrade the affected component.VulDB Recent EntriesRead More