CVE-2026-108260

CVE-2026-108260 published: Tina is a headless content management system. Prior to 0.2.1, the tina-markdown element in packages/@tinacms/web-components/src/tina-markdown.js assigns a rich-text node.url value directly to an anchor href without validating the URL scheme. A content autho...

View full NVD advisory → ← Back to CVE watch