CVE-2026-28357 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

NocoDB is software for building databases as spreadsheets. Prior to version 0.301.3, a stored XSS vulnerability exists in the Formula virtual cell. Formula resu…
Medium CVSS: 5.3

CVE-2026-28357

NocoDB is software for building databases as spreadsheets. Prior to version 0.301.3, a stored XSS vulnerability exists in the Formula virtual cell. Formula results containing URI::() patterns are rendered via v-html without sanitization, allowing injected HTML to execute. This issue has been patched in version 0.301.3.
Vendor
Nocodb
Product
Nocodb
CWE
CWE-79
Yayın Tarihi
2026-03-02 17:16:33
Güncelleme
2026-03-03 18:57:07
Source Identifier
security-advisories@github.com
KEV Date Added
-

Kategoriler

Referanslar