CVE-2026-27473 | SPIP up to 4.4.8 URL_SYNDIC cross site scripting
A vulnerability, which was classified as problematic, was found in SPIP up to 4.4.8. This affects an unknown function. The manipulation of the argument URL_SYNDIC results in cross site scripting.
This vulnerability is reported as CVE-2026-27473. The attack can be launched remotely. No exploit exists.
You should upgrade the affected component.