UNKNOWN NVD
CVE-2026-37710
Cross Site Scripting vulnerability in Omeka S v.4.2.0 allows a remote attacker to execute arbitrary code via the site navigation custom URL function
Cross Site Scripting vulnerability in Omeka S v.4.2.0 allows a remote attacker to execute arbitrary code via the site navigation custom URL function
References
- https://github.com/omeka/omeka-s
- https://github.com/omeka/omeka-s/commit/8d47b0ef2dfabc1dd8c52893400321d1fbb5b5f4
- https://github.com/raav3n/vulnerability-research/blob/main/CVE-2026-37710/README.md
This unknown severity vulnerability was published on 2026-08-28 via NVD.
vulnfeed aggregates 11493 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.