A vulnerability classified as problematic has been found in NocoDB up to 0.301.2. This vulnerability affects unknown code. Performing a manipulation results in cross site scripting.

This vulnerability is reported as CVE-2026-28398. The attack is possible to be carried out remotely. No exploit exists.

It is recommended to upgrade the affected component.