GHSA-g3m4-2wr6-2q64
GitHub Security Advisory
⚠ Unreviewed
CRITICAL
Has CVE
Advisory Details
SysAid On-Prem versions <= 23.3.40 are vulnerable to an unauthenticated XML External Entity (XXE) vulnerability in the Checkin processing functionality, allowing for administrator account takeover and file read primitives.
Related CVEs
Key Information
9.0
/10
Dataset
Last updated: July 25, 2025 6:37 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.