NA

CVE-2024-36043

Published: 18/05/2024 Updated: 20/05/2024

Vulnerability Summary

question_image.ts in SurveyJS Form Library prior to 1.10.4 allows contentMode=youtube XSS via the imageLink property.