VDB
Sign up
MEDIUM4.8

GHSA-74q2-6jp4-3rqq

Krayin CRM vulnerable to Cross Site Scripting (XSS) via the organization name

Details

Krayin CRM v1.3.0 is vulnerable to Cross Site Scripting (XSS) via the organization name field in `/admin/contacts/organizations/edit/2`.

Are you affected?

Enter the version of the package you're using.

Affected packages

Packagist/krayin/laravel-crm
Introduced in: 0

No fixed version published yet for krayin/laravel-crm (composer). Pin to a known-safe version or switch to an alternative.

References