Retour à la veille
CVE-2026-86226
Score CVSS
3.5
LOW
Description détaillée
A security flaw has been discovered in Projectwolds Online Attendance System 1.0. Affected by this issue is some unknown functionality of the file profile.php. The manipulation of the argument email results in cross site scripting. The attack may be performed from remote. The exploit has been released to the public and may be used for attacks.
Vecteur d'attaque (CVSS)
Vecteur brut :CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N
Dernières Vulnérabilités
CVE-2026-84820
Unauthenticated Cross Site Scripting (XSS) in Unlimited Elements For Elementor (Free Widgets, Addons, Templates) <= 2.0.17 versions.
VOIR DÉTAILS
CVE-2026-84818
Unauthenticated Cross Site Scripting (XSS) in Open User Map <= 1.4.50 versions.
VOIR DÉTAILS
CVE-2026-84817
Unauthenticated Cross Site Scripting (XSS) in JetFormBuilder <= 3.6.5.1 versions.
VOIR DÉTAILS
