Cross-site scripting vulnerability in QGIS QWC2...
Moderate severity
Unreviewed
Published
Oct 13, 2025
to the GitHub Advisory Database
•
Updated Oct 13, 2025
Description
Published by the National Vulnerability Database
Oct 13, 2025
Published to the GitHub Advisory Database
Oct 13, 2025
Last updated
Oct 13, 2025
Cross-site scripting vulnerability in QGIS QWC2 Registration GUI <=v2025.03.31
allows an authorized attacker to plant arbitrary JavaScript code in the page
References