Loading market data...
← Back to CVE feed

CVE-2026-91775

UNKNOWN View on NVD ↗

Description

LimeSurvey fails to safely encode attacker-controlled content from a crafted .lss survey file when displaying import warnings, resulting in XSS in the administrative interface.

Published: Sep 23, 2026 18:17 UTC Modified: Sep 23, 2026 18:17 UTC