PatchSiren

Bynder CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM Bynder CVE published 2026-04-06

CVE-2026-31153

A stored cross-site scripting (XSS) vulnerability was reported in Bynder v0.1.394, allowing attackers to execute arbitrary web scripts or HTML via a crafted payload. However, the Supplier disputes this finding, citing an invalid version number and lack of information on the system or environment used. This CVE record was published on 2026-04-06T15:17:09.670Z and has not been modified since then. Security [truncated]