CVE-2026-105294 - Legcord 1.1.0 through 1.3.0 Chromium Switch Injection via settings.setConfig
CVE ID :CVE-2026-105294 Published : Oct. 5, 2026, 1:16 a.m. | 2 hours, 11 minutes ago Description :Legcord 1.1.0 through 1.3.0 contains a configuration injection vulnerability that allows script in the Discord page to write any config key via the window.legcord settings.setConfig bridge....