CVE-2026-82642 : Détail

CVE-2026-82642

8.8
/
Haute
Cross-site Scripting
A03-Injection
Network
2026-08-30
13h44 +00:00
2026-08-30
13h44 +00:00
Notifications pour un CVE
Restez informé de toutes modifications pour un CVE spécifique.
Gestion des notifications

Descriptions du CVE

Readest: unsanitized iframe srcdoc attribute in the EPUB sanitizer can lead to arbitrary code execution

Readest is an open-source e-book reader built on Tauri. In versions prior to 0.11.16, EPUB chapter HTML is sanitized with DOMPurify using a configuration that forbade only the