System running
Last check: 2026-09-29 06:30:49 | Auto-updates every hour
756 PoCs
CybersecPlayground | The ultimate platform for cybersecurity learning & Bug Bounty Resources

CVE-CVE-2026-44401

Severity
MEDIUM
CVSS Score
4.8
Description

Typemill CMS version 2.x contains a persistent cross-site scripting vulnerability in the Markdown parser extension that allows authenticated users with theme-configuration access to inject malicious JavaScript URIs by supplying unsanitized href values in Markdown links. Attackers can craft Markdown links using the javascript: scheme through ParsedownExtension.php or TwigMarkdownExtension.php, storing a persistent payload that executes in the browser of every visitor who clicks the link, enabling...

PoCs for CVE-CVE-2026-44401

CVE-2026-44401
XSS Python 0
sn0x-sharma 2026-08-11
Master Cybersecurity | Join CybersecPlayground for Cybersecurity Learning & Bug Bounty Resources