CVE-2019-14512: Limesurvey

Medium severity, CVSS 6.1. EPSS: 1% chance of exploitation in the next 30 days.

LimeSurvey 3.17.7+190627 has XSS via Boxes in application/extensions/PanelBoxWidget/views/box.php or a label title in application/views/admin/labels/labelview_view.php.

Affected products

Published 2020-03-16. Last modified 2026-06-17.