Sploitus

CVE-2018-17302

No indexed exploits for CVE-2018-17302 yet

Stored XSS exists in views/fields/wysiwyg.js in EspoCRM 5.3.6 via a /#Email/view saved draft message.

Affected products
Espocrm
Espocrm
= 5.3.6
Fix
Available
CVSS 3.0
5.4 MEDIUM
EPSS
0.6% (47th percentile)
Weakness
CWE-79
NVD status
Modified
Published
2018-09-21
CVE-2018-17302 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2018-17302 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2018-17302 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.