Cross-site Scripting Vulnerability in Quiz And Survey Master by ExpressTech
CVE-2026-104391
6.5MEDIUM
What is CVE-2026-104391?
The Quiz And Survey Master plugin from ExpressTech is vulnerable to cross-site scripting, allowing attackers to inject malicious scripts into web pages. This vulnerability could enable unauthorized data access or manipulation when a user interacts with the affected quiz or survey features. It impacts all versions, specifically noted in version 11.2.7 and earlier.
Affected Version(s)
Quiz And Survey Master 0 <= 11.2.7