Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-v8g3-5j4v-2ghv

Опубликовано: 07 мая 2026
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

VINCE versions 3.0.38 and earlier do not properly verify the From address authenticity due to encoding confusion and use the from address for automated actions such as Ticket creation or Ticket updates.

VINCE versions 3.0.38 and earlier do not properly verify the From address authenticity due to encoding confusion and use the from address for automated actions such as Ticket creation or Ticket updates.

EPSS

Процентиль: 2%
0.00115
Низкий

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
nvd
3 месяца назад

VINCE versions 3.0.38 and earlier do not properly verify the From address authenticity due to encoding confusion and use the from address for automated actions such as Ticket creation or Ticket updates.

EPSS

Процентиль: 2%
0.00115
Низкий

6.5 Medium

CVSS3