Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-23724

Опубликовано: 16 янв. 2026
Источник: nvd
CVSS3: 4.3
EPSS Низкий

Описание

WeGIA is a web manager for charitable institutions. Prior to 3.6.2, a Stored Cross-Site Scripting (XSS) vulnerability was identified in the html/atendido/cadastro_ocorrencia.php endpoint of the WeGIA application. The application does not sanitize user-controlled data before rendering it inside the “Atendido” selection dropdown. This vulnerability is fixed in 3.6.2.

EPSS

Процентиль: 8%
0.00029
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-79

EPSS

Процентиль: 8%
0.00029
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-79