A vulnerability labeled as problematic has been found in Open Notebook up to 1.8.2. This vulnerability affects unknown code. Such manipulation leads to permissive cross-domain policy with untrusted domains.

This vulnerability is documented as CVE-2026-28201. The attack can be executed remotely. There is not any exploit available.