CNNVD-202602-258 Information

CNNVD ID

CNNVD-202602-258

CVE-2026-25616

  • CNNVD Published: 2026-02-03

Description (Chinese)

Blesta是Blesta公司的一个客户关系管理系统。 Blesta 5.13.3之前版本存在跨站脚本漏洞,该漏洞源于输入验证处理不当。

Description (English)

Bressa is a customer relationship management system for Bressa. There was a cross-site script loophole in the pre-BSta 5.13.3 version, which stemmed from the inappropriate input validation process.

Hazard Level

High

Vulnerability Type

跨站脚本

Affected Vendor

Blesta

Published

2026-02-03

Last Modified

2026-02-24

References

https://www.blesta.com/2026/01/28/security-advisory/ https://access.redhat.com/security/cve/cve-2026-25616

Patch

https://www.blesta.com/2026/01/28/security-advisory/

Share on: