A reflected cross-site scripting vulnerability in qcubed (all versions including 3.1.1) in profile.php via the stQuery-parameter allows unauthenticated attackers to steal sessions of authenticated users.Log in to view the POC file snapshot cached by Shenlong Bot
Log in to view