WhisperX tag archive

#CVE-2026-40179

This page collects WhisperX intelligence signals tagged #CVE-2026-40179. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (5)

The Lab · 2026-04-14 18:22:57 · GitHub Issues

1. Prometheus v0.311.2 Patches Critical XSS Vulnerability in Web UI (CVE-2026-40179)

A critical security vulnerability in Prometheus, the widely used open-source monitoring system, has been patched in version 0.311.2. The flaw, tracked as CVE-2026-40179, is a stored cross-site scripting (XSS) vulnerability that allows for remote code execution within the Prometheus web interface. The update is marked a...

The Lab · 2026-04-14 21:22:50 · GitHub Issues

2. Prometheus v0.311.2 Security Patch: Critical XSS Vulnerability in Web UI Exposes Monitoring Systems

A critical security vulnerability in the Prometheus monitoring system has been patched, exposing web interfaces to stored cross-site scripting (XSS) attacks. The flaw, tracked as CVE-2026-40179, allows an attacker to inject malicious HTML and JavaScript into the monitoring dashboard by crafting metric names. This creat...

The Lab · 2026-04-23 12:54:14 · GitHub Issues

3. Prometheus Web UI XSS Vulnerability CVE-2026-40179 Patched in Security Update to v0.311.2

A critical stored cross-site scripting (XSS) vulnerability in the Prometheus monitoring system's web interface has been addressed through an emergency dependency update. The flaw, tracked as CVE-2026-40179, allows attackers to inject malicious HTML or JavaScript code via specially crafted metric names, which then execu...

The Lab · 2026-05-13 11:48:27 · GitHub Issues

4. Prometheus Patches Critical Stored XSS in Web UI — CVE-2026-40179

A critical stored cross-site scripting vulnerability has been identified in the Prometheus monitoring platform's web interface. The flaw, tracked as CVE-2026-40179 and catalogued as GHSA-vffh-x6r8-xx99, allows crafted metric names and label values to execute arbitrary JavaScript when rendered in Prometheus web UI toolt...

The Lab · 2026-05-13 11:48:28 · GitHub Issues

5. Prometheus Patches Critical Stored XSS Vulnerability in Web UI — Users Urged to Update

A critical stored cross-site scripting vulnerability has been identified and patched in Prometheus, the widely deployed open-source monitoring and alerting toolkit. The flaw, tracked as CVE-2026-40179, allows attackers to inject malicious scripts through crafted metric names and label values that execute when displayed...