Questdb · Questdb · CVE-2026-0824
**Name of the Vulnerable Software and Affected Versions**
questdb ui versions up to 1.11.9
**Description**
A security flaw exists in the Web Console component of questdb ui, potentially leading to cross-site scripting. The issue is remotely exploitable, and an exploit has been publicly released. The vulnerability involves manipulation of an unknown function within the Web Console.
**Recommendations**
Upgrade to version 1.11.10 to address this issue.
Upgrade to QuestDB 9.3.0 to address this issue.