Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-26378

Опубликовано: 03 июн. 2026
Источник: debian

Описание

Cross Site Scripting vulnerability in Koha 25.11 and before allows a remote attacker to execute arbitrary code via file upload function in Invoice features

Пакеты

ПакетСтатусВерсия исправленияРелизТип
kohaitppackage

Связанные уязвимости

CVSS3: 5.4
nvd
3 месяца назад

Cross Site Scripting vulnerability in Koha 25.11 and before allows a remote attacker to execute arbitrary code via file upload function in Invoice features

CVSS3: 5.4
github
3 месяца назад

Cross Site Scripting vulnerability in Koha 25.11 and before allows a remote attacker to execute arbitrary code via file upload function in Invoice features