Description
Improper neutralization of input during web page generation (-cross-site scripting-) vulnerability in Bifra Engineering Consulting Ltd. Q-smart NexT Poll allows Stored XSS. This issue affects Q-smart NexT Poll: before 1.8.7.
CVSS 5.4EPSS 0.16199999999999998%Risk 0.55
View source- Published
- 2026-07-20 16:17:07
- Affected versions
- <1.8.7
- Type
- Web application
- Last modified
- 2026-07-20 19:17:30
- Vector
- CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N