← Back to CVE List
CVE-2021-42112
Published:
2021-10-08T21:15Z
Last Modified:
2024-11-21T06:27Z
Source:
MITRE CVE List
License:
MITRE-CVE-TOS
The "File upload question" functionality in LimeSurvey 3.x-LTS through 3.27.18 allows XSS in assets/scripts/modaldialog.js and assets/scripts/uploader.js. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt