CVE-2026-32277 | opensource-workshop connect-cms up to 1.41.0/2.41.0 cross site scripting (GHSA-cmfh-mpmf-fmq4)
A vulnerability, which was classified as problematic, was found in opensource-workshop connect-cms up to 1.41.0/2.41.0. The impacted element is an unknown function. Such manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2026-32277. The attack may be launched remotely. There is no exploit available.
You should upgrade the affected component.