THREAT OPS › Threat News › [GHSA] GHSA-5cwr-5jxg-pcf6 (medium) — Winter: Stored XSS through cached Brand Settings and Editor Settings custom styles
[GHSA] GHSA-5cwr-5jxg-pcf6 (medium) — Winter: Stored XSS through cached Brand Settings and Editor Settings custom styles
GHSA-5cwr-5jxg-pcf6 Severity: medium CVE: None
Winter: Stored XSS through cached Brand Settings and Editor Settings custom styles
### Impact
Users with the `backend.manage_branding` ("Customize the back-end") or `backend.manage_editor` ("Manage global code editor preferences") permission can provide custom CSS through **Settings → Customize Backend → Styles** or **Settings → Editor Settings → M
Indicators of compromise
- c95d780ab54f3a3f74a94ae1667bf12b3c549d5dsha1
- CVE-2026-32257cve
- CVE-2026-32258cve
- CVE-2025-61674cve
- CVE-2025-61676cve
Original source: https://github.com/advisories/GHSA-5cwr-5jxg-pcf6