LimeSurvey 社区版 7.0.5 存在一个经过身份验证的存储型跨站脚本(XSS)漏洞,位于管理员问题编辑器中用于替换字段的对话框中。该问题影响 LimeSurvey 7.0.5。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| LimeSurvey | LimeSurvey | 7.0.5 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-15973 | 8.4 HIGH | LimeSurvey 7.0.5 - Stored XSS in Survey Menu Entries |
| CVE-2026-63360 | 7.4 HIGH | LimeSurvey Community Edition 7.0.5 - Reflected XSS in user activation confirmation endpoin |
| CVE-2026-16809 | 7.2 HIGH | LimeSurvey Community Edition 7.0.5 - Stored XSS in quota message rendering |
No comments yet