CVE-2026-5301 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in coolercontrol-ui
CVE ID :CVE-2026-5301
Published : April 8, 2026, 12:04 p.m. | 1 hour, 3 minutes ago
Description :Stored XSS in log viewer in CoolerControl/coolercontrol-ui <4.0.0 allows unauthenticated attackers to take over the service via malicious JavaScript in poisoned log entries
Severity: 7.6 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : April 8, 2026, 12:04 p.m. | 1 hour, 3 minutes ago
Description :Stored XSS in log viewer in CoolerControl/coolercontrol-ui <4.0.0 allows unauthenticated attackers to take over the service via malicious JavaScript in poisoned log entries
Severity: 7.6 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...