CVE-2026-31953 | xibosignage xibo-cms up to 4.4.0 Notification Body cross site scripting (GHSA-85w9-c833-q4w2)
A vulnerability was found in xibosignage xibo-cms up to 4.4.0. It has been declared as problematic. This vulnerability affects unknown code of the component Notification Body Handler. The manipulation results in cross site scripting.
This vulnerability is cataloged as CVE-2026-31953. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.