GHSA-4q68-wwmh-hwrjMediumCVSS 5.4

EMX Tecnologia Gestao X version <= 8.4 contains a Stored Cross-Site Scripting (XSS) vulnerability...

Published
September 4, 2026
Last Modified
September 8, 2026

🔗 CVE IDs covered (1)

📋 Description

EMX Tecnologia Gestao X version <= 8.4 contains a Stored Cross-Site Scripting (XSS) vulnerability in the Help Chat functionality. Improper neutralization of user-controlled input during web page generation allows authenticated attackers to execute arbitrary JavaScript in the context of other authenticated users, potentially resulting in session hijacking, account takeover, and unauthorized actions.

🔗 References (4)