EIP-2026-111612
PRE-CVEqdPM 9.1 - 'cfg[app_app_name]' Persistent Cross-Site Scripting
Title source: legacyDescription
qdPM 9.1 - 'cfg[app_app_name]' Persistent Cross-Site Scripting
Exploits (1)
exploitdb
WORKING POC
by Kishan Lal Choudhary · textwebappsphp
https://www.exploit-db.com/exploits/48486
Details
Status
pre_cve
Tracked Since
Feb 18, 2026