A vulnerability was found in nice-select2 up to 2.4.0. It has been classified as problematic. This affects an unknown function. Performing a manipulation results in cross site scripting.
This vulnerability is reported as CVE-2026-17528. The attack is possible to be carried out remotely. No exploit exists.
Upgrading the affected component is recommended.