VYPR

System and Server Status module

by Webmin

Source repositories

CVEs (1)

  • CVE-2026-22678MedMay 21, 2026
    risk 0.28cvss 5.4epss 0.00

    Webmin before 2.641 contains a stored cross-site scripting vulnerability in the email template description field of the System and Server Status module that allows low-privileged authenticated attackers to execute arbitrary JavaScript in the browser context of administrators by…