NONE · 0

CVE-2025-11184

Cross-site scripting vulnerability in QGIS QWC2 Registration GUI <=v2025.03.31 allows an authorized attacker to plant arbitrary JavaScript code in the page

Vulnerability Description

Cross-site scripting vulnerability in QGIS QWC2 Registration GUI <=v2025.03.31 allows an authorized attacker to plant arbitrary JavaScript code in the page

Related Weaknesses (CWE)

References

FAQ

What is CVE-2025-11184?

CVE-2025-11184 is a documented vulnerability. Cross-site scripting vulnerability in QGIS QWC2 Registration GUI <=v2025.03.31 allows an authorized attacker to plant arbitrary JavaScript code in the page

How severe is CVE-2025-11184?

CVSS scoring is not yet available for CVE-2025-11184. Check NVD for updates.

Is there a patch for CVE-2025-11184?

Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.