Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 27 Aug 2026 08:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Stored XSS in Bynder v0.1.394 Enables Arbitrary Web Script Execution |
Thu, 27 Aug 2026 06:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A stored cross-site scripting (XSS) vulnerability in Bynder v0.1.394 allows attackers to execute arbitrary web scripts or HTML via a crafted payload. | A stored cross-site scripting (XSS) vulnerability in Bynder v0.1.394 allows attackers to execute arbitrary web scripts or HTML via a crafted payload. NOTE: this is disputed by the Supplier because v0.1.394 was never a valid version number, and because there is no available information on what v0.1.394 system or environment may have been used for this XSS finding. |
Tue, 07 Apr 2026 00:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Stored XSS in Bynder v0.1.394 Enables Arbitrary Web Script Execution | |
| First Time appeared |
Bynder
Bynder bynder |
|
| Vendors & Products |
Bynder
Bynder bynder |
Mon, 06 Apr 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A stored cross-site scripting (XSS) vulnerability in Bynder v0.1.394 allows attackers to execute arbitrary web scripts or HTML via a crafted payload. | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-08-27T05:44:57.841Z
Reserved: 2026-03-09T00:00:00.000Z
Link: CVE-2026-31153
Updated: 2026-04-06T15:04:20.929Z
Status : Deferred
Published: 2026-04-06T15:17:09.670
Modified: 2026-08-27T06:16:57.730
Link: CVE-2026-31153
No data.
OpenCVE Enrichment
Updated: 2026-08-27T08:30:07Z
-
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')