CVE WATCH / VULNERABILITY DETAIL

CVE-2026-108259

HIGHCVSS 8.2NVD feed

Published 9 October 2026 · tracked since 10 October 2026

Description

Tina is a headless content management system. Prior to 3.0.0, @tinacms/cli reads Git branch values from VERCEL_GIT_COMMIT_REF, GITHUB_BRANCH, or HEAD, incorporates the raw value into the API URL, and interpolates that URL into JavaScript string literals in packages/@tinacms/cli/src/next/codegen/inde

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

CVE-2026-108259 — Vulnerability Details | Logic Encoder
CVE WATCH / VULNERABILITY DETAIL

CVE-2026-108259

HIGHCVSS 8.2NVD feed

Published 9 October 2026 · tracked since 10 October 2026

Description

Tina is a headless content management system. Prior to 3.0.0, @tinacms/cli reads Git branch values from VERCEL_GIT_COMMIT_REF, GITHUB_BRANCH, or HEAD, incorporates the raw value into the API URL, and interpolates that URL into JavaScript string literals in packages/@tinacms/cli/src/next/codegen/inde

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

[an error occurred while processing this directive]