Known Vulnerabilities for LimeSurvey by Na
Listed below are 10 of the newest known vulnerabilities associated with "LimeSurvey" by "Na".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-65931 json | LimeSurvey Community Edition 7.0.5 contains an authenticated improper authorization vulnerability in the survey menu entry cr... | Not Provided | 2026-08-27 | 2026-08-28 |
| CVE-2026-65930 json | LimeSurvey Community Edition 7.0.5 contains an authenticated stored cross-site scripting vulnerability in the replacement-fie... | Not Provided | 2026-08-26 | 2026-08-27 |
| CVE-2026-63361 json | LimeSurvey Community Edition 7.0.5 contains an authenticated reflected cross-site scripting vulnerability in the HTML editor ... | Not Provided | 2026-08-14 | 2026-08-26 |
| CVE-2026-63360 json | LimeSurvey Community Edition 7.0.5+260623 contains an authenticated reflected Cross-Site Scripting vulnerability in the user ... | Not Provided | 2026-08-26 | 2026-08-27 |
| CVE-2026-63107 json | LimeSurvey through 6.17.10 and 7.0.4 contains a server-side request forgery vulnerability in the REST API survey template end... | Not Provided | 2026-07-20 | 2026-07-23 |
| CVE-2026-50636 json | The RemoteControl API methods invite_participants and remind_participants pass a caller-supplied token-ID array into TokenDyn... | Not Provided | 2026-06-09 | 2026-06-23 |
| CVE-2026-50635 json | LimeSurvey constructs account password-reset links from the client-supplied HTTP Host header without validating it. The optio... | Not Provided | 2026-06-09 | 2026-06-23 |
| CVE-2026-18403 json | LimeSurvey Community Edition 7.0.5 contains an authenticated SQL injection vulnerability in the Central Participant Database ... | Not Provided | 2026-08-14 | 2026-08-14 |
| CVE-2026-16809 json | LimeSurvey Community Edition 7.0.5 contains a stored cross-site scripting vulnerability in the survey quota creation workflow... | Not Provided | 2026-08-26 | 2026-08-27 |
| CVE-2026-15973 json | LimeSurvey Community Edition 7.0.5 contains a stored cross-site scripting vulnerability in the Survey Menu Entries administra... | Not Provided | 2026-08-26 | 2026-08-27 |