cleantalk
Vulnerabilities and Security Researches

Contact Manager, CVE-2026-32517

CVE, Research URL

CVE-2026-32517

Application

Contact Manager

Published on
Mar 25, 2026
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Kleor Contact Manager contact-manager allows Reflected XSS.This issue affects Contact Manager: from n/a through <= 9.1.
Affected versions
max 9.1.
Status
vulnerable