VYPR

Doggo

by Woylie

CVEs (1)

  • CVE-2026-66353MedAug 27, 2026
    risk 0.27cvss epss

    Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in woylie doggo allows Reflected XSS. Doggo.normalize_value/2 in lib/doggo.ex returned date field values wrapped in {:safe, ...}, the Phoenix.HTML marker meaning "already escaped,…