Analysis and contextual insights are available on OpenCVE Cloud.
No solution or workaround provided in the CVE record.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Sun, 11 Oct 2026 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A security flaw has been discovered in Furion .NET Framework up to 4.9.9.95. This affects the function RunCompile of the file framework/Furion/ViewEngine/Engines/ViewEngine.cs of the component View Engine. The manipulation of the argument content results in improper neutralization of special elements used in a template engine. The attack can be executed remotely. The exploit has been released to the public and may be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way. | |
| Title | Furion .NET Framework View ViewEngine.cs RunCompile special elements in template engine | |
| First Time appeared |
Furion
Furion .net Framework |
|
| Weaknesses | CWE-1336 CWE-791 |
|
| CPEs | cpe:2.3:a:furion:.net_framework:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Furion
Furion .net Framework |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-10-11T10:30:14.538Z
Reserved: 2026-10-10T15:14:25.303Z
Link: CVE-2026-108570
No data.
Status : Received
Published: 2026-10-11T11:16:59.980
Modified: 2026-10-11T11:16:59.980
Link: CVE-2026-108570
No data.
OpenCVE Enrichment
No data.