CVE-2026-27120 | vapor leaf-kit up to 1.4.0 Special Character cross site scripting (GHSA-4hfh-fch3-5q7p)
A vulnerability was found in vapor leaf-kit up to 1.4.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component Special Character Handler. Executing a manipulation can lead to cross site scripting.
This vulnerability appears as CVE-2026-27120. The attack may be performed from remote. There is no available exploit.
It is recommended to upgrade the affected component.