VYPR
Medium severity6.3NVD Advisory· Published Jun 19, 2026· Updated Jun 22, 2026

CVE-2026-21768

CVE-2026-21768

Description

The compose-rich-editor library (v1.0.0-rc14) used in HCL Verse for Android's rich text email composition fails to properly validate all HTML input thereby allowing malicious content to be executed in certain situations.

Affected products

1

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.