CVE-2026-58591
EUVD-2026-4307310.07.2026, 22:16
Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability in Drupal Colorbox allows Cross-Site Scripting (XSS). This issue affects Colorbox versions: from 0.0.0 to 2.1.5, from 0.0.0 to 2.2.0.Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| colorbox_project | colorbox | 𝑥 < 2.1.5 |
| colorbox_project | colorbox | 2.2.0 |
𝑥
= Vulnerable software versions