A vulnerability was found in honojs hono up to 4.12.24 and classified as problematic . This vulnerability affects unknown code of the component Cookie Header Handler . Such manipulation leads to escaping of output. This vulnerability is uniquely identified as CVE-2026-54287 . The attack can be launched remotely. No exploit exists. It is suggested to upgrade the affected component.