EIP-2026-106226
PRE-CVECPG Dragonfly 9.0.2.0 - Multiple Cross-Site Scripting Vulnerabilities
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-106226. PoCs published by mircia.
AI-analyzed exploit summary The exploit demonstrates multiple cross-site scripting (XSS) vulnerabilities in CPG Dragonfly by injecting arbitrary JavaScript code via crafted URLs. The PoC includes specific payloads targeting the 'name' and 'profile' parameters, as well as the 'displayimage' module.
Description
CPG Dragonfly 9.0.2.0 - Multiple Cross-Site Scripting Vulnerabilities
Exploits (1)
The exploit demonstrates multiple cross-site scripting (XSS) vulnerabilities in CPG Dragonfly by injecting arbitrary JavaScript code via crafted URLs. The PoC includes specific payloads targeting the 'name' and 'profile' parameters, as well as the 'displayimage' module.