
CVE-2026-28280: Stored Cross-Site Scripting (XSS) in osctrl-admin On-Demand Query List A Stored Cross-Site Scripting (XSS) vulnerability exists in the `osctrl-admin` component of osctrl versions prior to 0.5.0. The vulnerability allows authenticated u... https://cvereports.com/reports/CVE-2026-28280
Post summary
A stored XSS vulnerability in osctrl-admin versions before 0.5.0 is disclosed, with no PoC, exploit, active exploitation, or patch mentioned.


