What is CVE-2026-73237?
CVE-2026-73237 is an XSS (Cross-Site Scripting) vulnerability found in the Markdown handling of Apache Allura. This security flaw affects Apache Allura versions from 1.10.0 up to, but not including, 1.19.1. Users are recommended to upgrade to version 1.19.1, which fixes the issue.
Azərbaycanca: CVE-2026-73237 Apache Allura-nın Markdown prosessorunda aşkar edilmiş XSS (Cross-Site Scripting) zəifliyidir. Bu təhlükəsizlik boşluğu 1.10.0-dan 1.19.1-ə qədər olan versiyaları olan Apache Allura istifadəçilərinə təsir göstərir. Problemi aradan qaldırmaq üçün istifadəçilərə versiya 1.19.1-ə yeniləmə tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-79; shared vendor: Apache
FAQ1
Which Apache Allura versions are affected by CVE-2026-73237?
This XSS vulnerability affects Apache Allura versions from 1.10.0 up to, but not including, 1.19.1.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.