Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fwqw-7mg9-4qh9

Опубликовано: 16 мар. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 1.9
CVSS3: 2.4

Описание

A vulnerability has been found in Worksuite HR, CRM and Project Management up to 5.5.25. The affected element is an unknown function of the file /account/orders/create. The manipulation of the argument Client Note leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

A vulnerability has been found in Worksuite HR, CRM and Project Management up to 5.5.25. The affected element is an unknown function of the file /account/orders/create. The manipulation of the argument Client Note leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

EPSS

Процентиль: 8%
0.00029
Низкий

1.9 Low

CVSS4

2.4 Low

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 2.4
nvd
26 дней назад

A vulnerability has been found in Worksuite HR, CRM and Project Management up to 5.5.25. The affected element is an unknown function of the file /account/orders/create. The manipulation of the argument Client Note leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

EPSS

Процентиль: 8%
0.00029
Низкий

1.9 Low

CVSS4

2.4 Low

CVSS3

Дефекты

CWE-79