libkiwix 10.0.0 and 10.0.1 allows XSS in the built-in webserver functionality via the search suggestions URL parameter. This is fixed in 10.1.0.
| Software | From | Fixed in |
|---|---|---|
| kiwix / libkiwix | 10.0.0 | 10.0.0.x |
| kiwix / libkiwix | 10.0.1 | 10.0.1.x |
| fedoraproject / fedora | 35 | 35.x |