GHSA-rhv9-26qc-872fMediumCVSS 6.1
GestSup versions before 3.2.62 contain a stored cross-site scripting vulnerability in the IMAP...
🔗 CVE IDs covered (1)
📋 Description
GestSup versions before 3.2.62 contain a stored cross-site scripting vulnerability in the IMAP OAuth connector that double-decodes MIME-encoded email subjects after HTML escaping. Unauthenticated attackers can send crafted emails to monitored mailboxes with nested MIME encoded-words to inject JavaScript that executes in technician sessions when viewing tickets.
🔗 References (7)
- https://nvd.nist.gov/vuln/detail/CVE-2026-102374
- https://gestsup.fr/index.php?page=changelog
- https://gestsup.fr/index.php?page=download
- https://gestsup.fr/index.php?page=download&channel=stable&version=3.2.62&type=patch
- https://www.vulncheck.com/advisories/gestsup-before-3.2.62-stored-xss-via-double-decoded-email-subject-in-oauth-imap-connector
- https://blog.spiizn.xyz/articles/remote-code-execution-turning-a-ticket-into-a-new-issue
- https://github.com/advisories/GHSA-rhv9-26qc-872f