Vulnerabilities
CVE-2026-28509 - LangBot has a Cross Site Scripting(XSS) Vulnerability
CVE ID : CVE-2026-28509 Published : March 6, 2026, 5:16 a.m. | 35 minutes ago Description : LangBot is a global IM bot platform designed for LLMs. Prior to version 4.8.7, LangBot’s web UI renders user-supplied raw HTML using rehypeRaw, which can lead to a cross-site scripting (XSS) vulnerability. This issue has been patched in version 4.8.7. Severity: 6.3 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...