A vulnerability, which was classified as critical , was found in silentmatt expr-eval . This affects the function toJSFunction of the component Expressions Handler . The manipulation results in code injection. This vulnerability is cataloged as CVE-2026-12866 . The attack may be launched remotely. There is no exploit available.