[Medium] CVE-2026-41412 – alf.io is an open source ticket reservation system for conferences, trade shows,...
Medium CVE-2026-41412 alf.io is an open source ticket reservation system for conferences, trade shows, workshops, and meetups. Prior to version 2.0-M5-2606, the alf.io extension sandbox injects a fully-functional HTTP client (`simpleHttpClient`) into every extension script's scope. The...