Filtered by vendor Litespeed Technologies Subscriptions
Filtered by product Openlitespeed Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2021-47855 1 Litespeed Technologies 1 Openlitespeed 2026-01-22 7.2 High
Openlitespeed 1.7.9 contains a stored cross-site scripting vulnerability in the dashboard's Notes parameter that allows administrators to inject malicious scripts. Attackers can craft a payload in the Notes field during listener configuration that will execute when an administrator clicks on the Default Icon.