CVE-2026-103590

CVE-2026-103590 published: QloApps through 1.7.0 contains a reflected cross-site scripting vulnerability in the back-office room type editor's length of stay fields. Attackers can induce authenticated administrators to submit crafted POST requests with malicious payloads in restricti...

View full NVD advisory → ← Back to CVE watch