MEDIUM
Bynder
CVE published 2026-04-06
CVE-2026-31153
A stored cross-site scripting (XSS) vulnerability in Bynder before 12 January 2026 allows attackers to execute arbitrary web scripts or HTML via a crafted payload. The CVE record was published on 2026-04-06T15:17:09.670Z and has not been modified since then. The NVD entry is currently Deferred. This vulnerability affects Bynder deployments, and defenders should assess exposure and potential impact. The vu [truncated]