CVE-2026-42455 | Linkwarden up to 2.14.0 Archive Upload Endpoint [linkId]?format=4 cross site scripting (GHSA-fjvg-mch3-j3vg)
A vulnerability described as problematic has been identified in Linkwarden up to 2.14.0. This impacts an unknown function of the file /api/v1/archives/[linkId]?format=4 of the component Archive Upload Endpoint. Such manipulation leads to cross site scripting.
This vulnerability is referenced as CVE-2026-42455. It is possible to launch the attack remotely. No exploit is available.