CVE-2025-43954

Publication date

2025-04-20 00:00:00

Family

mitre

State

PUBLISHED

Description

QMarkdown (aka quasar-ui-qmarkdown) before 2.0.5 allows XSS via headers even when when no-html is set.