CVE-2026-45228 — Quark Drive before 0.8.5 contains a stored cross-site scripting vulnerability in the System Configuration page where the template renders push_config key names using Vue.js's v-html directive with — CVE Database · The Intelligence Room