Bartłomiej Florek

1 exploit Active since Mar 2025
CVE-2025-25363 WRITEUP MEDIUM WRITEUP
Thepluginpeople Enterprise Mail Handler < 4.1.69-dc - Basic XSS
An authenticated stored cross-site scripting (XSS) vulnerability in The Plugin People Enterprise Mail Handler for Jira Data Center (JEMH) before v4.1.69-dc allows attackers with Administrator privileges to execute arbitrary Javascript in context of a user's browser via injecting a crafted payload into the HTML field of a template.
CVSS 6.5