Beveiligingsadvies

CVE-2026-16809

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-08-26 21:39:12
Laatst bijgewerkt 2026-08-27 18:30:59
Toegewezen door Fluid Attacks
CVSS-score 7.2
Status PUBLISHED

Beschrijving

LimeSurvey Community Edition 7.0.5 contains a stored cross-site scripting vulnerability in the survey quota creation workflow. An authenticated low-privileged user who can create and manage their own survey can store malicious JavaScript in a quota message. This issue affects LimeSurvey: 7.0.5.