cleantalk
Vulnerabilities and Security Researches

Qubely – Advanced Gutenberg Blocks, CVE-2026-39638

CVE, Research URL

CVE-2026-39638

Published on
Apr 08, 2026
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Themeum Qubely qubely allows Stored XSS.This issue affects Qubely: from n/a through <= 1.8.14.
Affected versions
max 1.8.14.
Status
vulnerable