CVE-2026-28359 | NocoDB up to 0.301.2 TipTap Editor cross site scripting
A vulnerability was found in NocoDB up to 0.301.2. It has been declared as problematic. The impacted element is an unknown function of the component TipTap Editor. Such manipulation leads to cross site scripting.
This vulnerability is referenced as CVE-2026-28359. It is possible to launch the attack remotely. No exploit is available.
It is recommended to upgrade the affected component.