A vulnerability categorized as problematic has been discovered in Textpattern CMS 4.9.0. The affected element is an unknown function of the component XML Handler. Such manipulation leads to cross site scripting.

This vulnerability is traded as CVE-2026-32986. The attack may be launched remotely. There is no exploit available.