EIP-2026-110594
PRE-CVEPhonalisa - Multiple HTML Injection / Cross-Site Scripting Vulnerabilities
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-110594. PoCs published by Benjamin Kunz Mejri.
AI-analyzed exploit summary The exploit demonstrates multiple XSS vulnerabilities in Phonalisa 5.0 by injecting malicious HTML/JS payloads via URL parameters. The payloads execute arbitrary JavaScript in the context of the web server, potentially stealing cookies or performing other attacks.
Description
Phonalisa - Multiple HTML Injection / Cross-Site Scripting Vulnerabilities
Exploits (1)
The exploit demonstrates multiple XSS vulnerabilities in Phonalisa 5.0 by injecting malicious HTML/JS payloads via URL parameters. The payloads execute arbitrary JavaScript in the context of the web server, potentially stealing cookies or performing other attacks.