Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
7.1
Malicious Links Can Hijack Link Whisper Free Pages
CVE-2026-22357
Summary
A security flaw in Link Whisper Free allows hackers to inject malicious code into web pages, potentially stealing user data or taking control of the page. This affects users of Link Whisper Free version 0.9.0 or earlier. To fix this, update to the latest version of Link Whisper Free.
Original title
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Spencer Haws Link Whisper Free link-whisper allows Reflected XSS.This issue affects Link Whispe...
Original description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Spencer Haws Link Whisper Free link-whisper allows Reflected XSS.This issue affects Link Whisper Free: from n/a through <= 0.9.0.
nvd CVSS3.1
7.1
Vulnerability type
CWE-79
Cross-site Scripting (XSS)
Published: 20 Feb 2026 · Updated: 12 Mar 2026 · First seen: 6 Mar 2026