Cross-site Scripting Vulnerability in Garden Gnome Package by Chief Gnome
CVE-2026-39683
5.9MEDIUM
What is CVE-2026-39683?
The Garden Gnome Package, developed by Chief Gnome, contains a Cross-site Scripting (XSS) vulnerability that arises from improper neutralization of user input during web page generation. This flaw allows for DOM-based XSS attacks that can be exploited, potentially compromising user data and security. It affects versions of the Garden Gnome Package up to and including 2.4.1, necessitating immediate attention to ensure the safety and integrity of web applications utilizing this package.
Affected Version(s)
Garden Gnome Package 0 <= 2.4.1