CVE-2025-56526
18.11.2025, 17:16
Cross site scripting (XSS) vulnerability in Kotaemon 0.11.0 allowing attackers to execute arbitrary code via a crafted PDF.
| Vendor | Product | Version |
|---|---|---|
| cinnamon | kotaemon | 𝑥 ≤ 0.11.0 |
𝑥
= Vulnerable software versions
References