-
CVSS Score
-Basic Information
CVE ID
-
GHSA ID
-
EPSS Score
-
CWE
-
Published
-
Updated
-
KEV Status
-
Technology
-
| Package Name | Ecosystem | Vulnerable Versions | First Patched Version |
|---|---|---|---|
| dolibarr/dolibarr | composer | <= 13.0.2 |
The PoC demonstrates XSS via the group management endpoint (/user/group/card.php) through the 'nom' parameter. The vulnerability stems from:
Ongoing coverage of React2Shell