A vulnerability was found in nice-select2 up to 2.4.0. It has been classified as problematic. This affects an unknown function. Performing a manipulation results in cross site scripting.

This vulnerability is reported as CVE-2026-17528. The attack is possible to be carried out remotely. No exploit exists.

Upgrading the affected component is recommended.