Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 3

Количество 3

nvd логотип

CVE-2026-48320

16 дней назад

ColdFusion is affected by a reflected Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this vulnerability to inject malicious scripts into a web page, potentially gaining elevated access or control over the victim's account or session. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed.

CVSS3: 8.5
EPSS: Низкий
github логотип

GHSA-gvvg-xf8x-hr96

16 дней назад

ColdFusion is affected by a reflected Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this vulnerability to inject malicious scripts into a web page, potentially gaining elevated access or control over the victim's account or session. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed.

CVSS3: 8.5
EPSS: Низкий
fstec логотип

BDU:2026-10062

17 дней назад

Уязвимость программной платформы ColdFusion, связанная с непринятием мер по защите структуры веб-страницы, позволяющая нарушителю повысить свои привилегии

CVSS3: 8.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2026-48320

ColdFusion is affected by a reflected Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this vulnerability to inject malicious scripts into a web page, potentially gaining elevated access or control over the victim's account or session. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed.

CVSS3: 8.5
9%
Низкий
16 дней назад
github логотип
GHSA-gvvg-xf8x-hr96

ColdFusion is affected by a reflected Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this vulnerability to inject malicious scripts into a web page, potentially gaining elevated access or control over the victim's account or session. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed.

CVSS3: 8.5
9%
Низкий
16 дней назад
fstec логотип
BDU:2026-10062

Уязвимость программной платформы ColdFusion, связанная с непринятием мер по защите структуры веб-страницы, позволяющая нарушителю повысить свои привилегии

CVSS3: 8.5
9%
Низкий
17 дней назад

Уязвимостей на страницу