A vulnerability was found in duck-organization questbot up to 1.1.5. It has been classified as problematic. This vulnerability affects unknown code. The manipulation leads to escaping of output.
This vulnerability is documented as CVE-2026-48485. The attack can be initiated remotely. There is not any exploit available.
Upgrading the affected component is recommended.