Executive brief
Authelia: Improper Neutralization of Input During Web Page Generation Leads to Potential Cross-site Scripting in github.com/authelia/authelia
Affected products
- Go github.com/authelia/authelia/v4
- Go github.com/authelia/authelia
Junglewise Threat Intelligence
CVE-2026-33525 · Severity: medium · CVSS 4 · Published 2026-03-26
Technologies: github.com/authelia/authelia/v4 (Go), github.com/authelia/authelia (Go). Vendors: Go.
Authelia: Improper Neutralization of Input During Web Page Generation Leads to Potential Cross-site Scripting in github.com/authelia/authelia