Junglewise Threat Intelligence

CVE-2026-100522: Cotonti through 1.0.0 contains a reflected cross-site scripting vulnerability in message.php where the lng parameter is not properly escaped

CVE-2026-100522 · Severity: medium · CVSS 6.1 · Published 2026-09-26