NVD Vulnerability Detail
Search Exploit, PoC
CVE-2026-40230
Summary

Helpy contains a stored cross-site scripting vulnerability in the knowledge base Doc rendering logic. An authenticated attacker with admin or agent editor privileges can persist arbitrary HTML or JavaScript in the body field of a knowledge base Doc.This issue affects helpy: 2.8.0.

Publication Date April 30, 2026, 1:16 a.m.
Registration Date April 30, 2026, 4:10 a.m.
Last Update April 30, 2026, 1:16 a.m.
Related information, measures and tools
Common Vulnerabilities List