VYPR
Medium severity5.3NVD Advisory· Published Apr 14, 2026· Updated Jun 17, 2026

CVE-2026-2404

CVE-2026-2404

Description

CWE-116 Improper Encoding or Escaping of Output vulnerability exists that could cause log injection and forged log when an attacker alters the POST /j_security check request payload.

Affected products

2

Patches

Vulnerability mechanics

References

1

News mentions

1