Skip to main content
Loading…
    CVE-2026-28338 — PMD is an extensible multilanguage static code analyzer. Prior to version 7.22.0, PMD's `vbhtml` and `yahtml` report formats insert rule violation messages into HTML output without escaping. When — CVE Database · The Intelligence Room