CVE-2019-14512: Limesurvey
Medium severity, CVSS 6.1. EPSS: 1% chance of exploitation in the next 30 days.
LimeSurvey 3.17.7+190627 has XSS via Boxes in application/extensions/PanelBoxWidget/views/box.php or a label title in application/views/admin/labels/labelview_view.php.
Affected products
- Limesurvey Limesurvey: version 3.17.7+190627 only
Published 2020-03-16. Last modified 2026-06-17.