Loading HuntDB...

GHSA-6r26-7hfr-q8rr

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Holistic IT, Consultancy Coop. Workcube ERP allows Reflected XSS.This issue affects Workcube ERP: from V12 - V14 through 20250916. 

NOTE: The vendor did not inform about the completion of the fixing process within the specified time. The CVE will be updated when new information becomes available.

Related CVEs

Key Information

GHSA ID
GHSA-6r26-7hfr-q8rr
Published
September 16, 2025 3:32 PM
Last Modified
September 17, 2025 3:30 PM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 22, 2025 6:29 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.