CVE-2025-15056: Slab Quill
Medium severity, CVSS 6.1. EPSS: 0.3% chance of exploitation in the next 30 days.
A lack of data validation vulnerability in the HTML export feature in Quill in allows Cross-Site Scripting (XSS). This issue affects Quill: 2.0.3.
Affected products
- Slab Quill: version 2.0.3 only
Published 2026-01-13. Last modified 2026-06-17.