Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
6.9

MaxKB AI Assistant: Malicious JavaScript Can Be Injected

CVE-2026-39422
Summary

Versions of MaxKB AI Assistant 2.7.1 and below are vulnerable to a security flaw that allows attackers to inject malicious JavaScript code into the application's chat interface. This could potentially allow an attacker to take control of a user's browser or steal sensitive information. Update to the latest version, 2.8.0, to fix this issue.

Original title
MaxKB is an open-source AI assistant for enterprise. Versions 2.7.1 and below contain a Stored Cross-Site Scripting (XSS) vulnerability through the application name or icon fields when creating an ...
Original description
MaxKB is an open-source AI assistant for enterprise. Versions 2.7.1 and below contain a Stored Cross-Site Scripting (XSS) vulnerability through the application name or icon fields when creating an application. When a victim visits the public chat interface (/ui/chat/{access_token}), the ChatHeadersMiddleware retrieves the application data and directly inserts the unescaped application name and icon into the HTML response via string replacement. This allows an attacker to execute arbitrary JavaScript in the victim's browser context. This issue has been fixed in version 2.8.0.
nvd CVSS4.0 6.9
Vulnerability type
CWE-79 Cross-site Scripting (XSS)
Published: 14 Apr 2026 · Updated: 14 Apr 2026 · First seen: 14 Apr 2026