CVE-2026-23630 | Docmost up to 0.23.x Mermaid Diagram mermaid.render cross site scripting (GHSA-r4hj-mc62-jmwj)
A vulnerability categorized as problematic has been discovered in Docmost up to 0.23.x. This impacts the function mermaid.render of the component Mermaid Diagram Handler. The manipulation results in cross site scripting.
This vulnerability is reported as CVE-2026-23630. The attack can be launched remotely. No exploit exists.
It is advisable to upgrade the affected component.