CVE-2026-33664 | kestra-io kestra up to 1.3.3 Description cross site scripting
A vulnerability was found in kestra-io kestra up to 1.3.3 and classified as problematic. Affected by this issue is some unknown functionality of the component Description Handler. Executing a manipulation can lead to cross site scripting.
This vulnerability appears as CVE-2026-33664. The attack may be performed from remote. There is no available exploit.
Applying a patch is advised to resolve this issue.