CVE-2018-17302
Stored XSS exists in views/fields/wysiwyg.js in EspoCRM 5.3.6 via a /#Email/view saved draft message.
Stored XSS exists in views/fields/wysiwyg.js in EspoCRM 5.3.6 via a /#Email/view saved draft message.
MEDIUM · CVSS 5.4
EPSS 0.00191
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0