{"id":"CVE-2026-102295","title":"A flaw was found in Quay","summary":"A flaw was found in Quay. A cross-site scripting (XSS) vulnerability in the OAuth callback handler allows a remote attacker to execute arbitrary JavaScript code within a user's browser session. By tricking a logged-in user into visiting …","severity":"medium","cvss":5.4,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N","cwe":["CWE-79"],"vendor":"Red Hat","product":"quay/quay-rhel9","affected":["quay/quay-rhel9 (all versions)"],"published":"2026-10-05","updated":"2026-10-05","sourceUpdated":"2026-10-05T18:17:31.057","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-102295","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-102295","label":"secalert@redhat.com"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2542699","label":"secalert@redhat.com"}],"tags":["nvd","cve.org"],"ingestedAt":"2026-10-05T17:27:45.059Z","slug":"CVE-2026-102295","body":"## Overview\n\nA flaw was found in Quay. A cross-site scripting (XSS) vulnerability in the OAuth callback handler allows a remote attacker to execute arbitrary JavaScript code within a user's browser session. By tricking a logged-in user into visiting a specially crafted link, an attacker can exploit improper input sanitization to run client-side scripts in the application context. Successful exploitation could allow the attacker to compromise the user's session, access sensitive registry information, or perform unauthorized actions on their behalf.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"sunlit","depthScore":30,"depthScoreParts":{"impact":29.7,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}