CVE-2026-29086 | honojs hono up to 4.12.3 setCookie inappropriate comment style (GHSA-5pq2-9x2x-5p6w)
A vulnerability classified as critical was found in honojs hono up to 4.12.3. This impacts the function setCookie. The manipulation results in inappropriate comment style.
This vulnerability is reported as CVE-2026-29086. The attack can be launched remotely. No exploit exists.
Upgrading the affected component is advised.