CVE-2025-48485 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

FreeScout is a free self-hosted help desk and shared mailbox. Prior to version 1.8.180, the application is vulnerable to Cross-Site Scripting (XSS) attacks due…
Medium CVSS: 6.1

CVE-2025-48485

FreeScout is a free self-hosted help desk and shared mailbox. Prior to version 1.8.180, the application is vulnerable to Cross-Site Scripting (XSS) attacks due to incorrect input validation and sanitization of user-input data when an authenticated user updates the profile of an arbitrary customer. This issue has been patched in version 1.8.180.
Vendor
Freescout
Product
Freescout
CWE
CWE-79
Yayın Tarihi
2025-05-30 07:15:22
Güncelleme
2025-06-04 14:32:26
Source Identifier
security-advisories@github.com
KEV Date Added
-

Kategoriler

Referanslar