Medium severityNVD Advisory· Published Sep 28, 2026· Updated Sep 28, 2026
CVE-2026-18825
CVE-2026-18825
Description
An Origin Validation Error in the middleware of the connect-xcors npm package allows an attacker to bypass origin verification and perform a cross domain authenticated request.
Affected products
1Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.