CVE-2026-25156 | kohler hotcrp 3.2 cross site scripting (GHSA-p88p-2f2p-2476 / EUVD-2026-5000)
A vulnerability labeled as problematic has been found in kohler hotcrp 3.2. The impacted element is an unknown function. Executing a manipulation can lead to cross site scripting.
This vulnerability is registered as CVE-2026-25156. It is possible to launch the attack remotely. No exploit is available.
A patch should be applied to remediate this issue.