CYBER CODE RED

Get real-time updates on Telegram

Verified

CVE-2026-106106: quasar < 2.23.3; +2 more affected products

Affected technology

quasar · < 2.23.3
quasarframework

render-ssr-error · < 2.2.4
@quasar

app-vite · < 3.3.0
@quasar

Component: Not specified by the source

Attack conditions (Vendor/CNA, CVSS 4.0): Adjacent network · No privileges required · Passive user interaction

What an attacker can do

Vendor/CNA’s CVSS 4.0 assessment (base score 7.1/10) rates confidentiality impact as high; integrity impact as low; availability impact as none. The description does not specify what an attacker can achieve beyond these rated impacts.

Published

CWE
CWE-79, CWE-497
KEV
no

Provenance

Stable permalink: https://cybercodered.org/item/cve-cve-2026-106106.html