FreeScout
45 exploits
Active since Mar 2024
FreeScout: Stored XSS via Unescaped Email Template Rendering ({!! $thread->body !!})
CVSS 9.3
FreeScout <=1.8.206 - Authenticated RCE
CVSS 10.0
FreeScout <1.8.206 - RCE
CVSS 8.8
FreeScout <1.8.206 - Auth Bypass
CVSS 9.8
Freescout < 1.8.124 - Log Information Exposure
CVSS 7.1
Freescout < 1.8.139 - Injection
CVSS 7.6
Freescout < 1.8.139 - Prototype Pollution
CVSS 4.6
FreeScout <1.8.178 - Code Injection
CVSS 6.5
FreeScout <1.8.178 - Deserialization
CVSS 7.2
FreeScout <1.8.178 - Code Injection
CVSS 7.2
FreeScout <1.8.179 - RCE
CVSS 9.8
FreeScout <1.8.179 - Privilege Escalation
CVSS 8.1
FreeScout <1.8.179 - Info Disclosure
CVSS 4.3
FreeScout <1.8.180 - Auth Bypass
CVSS 8.1
FreeScout <1.8.180 - Info Disclosure
CVSS 8.1
FreeScout <1.8.180 - Mass Assignment
CVSS 4.9
FreeScout <1.8.181 - XSS
CVSS 5.4
FreeScout <1.8.181 - Privilege Escalation
CVSS 6.6
Freescout < 1.8.86 - Insecure Deserialization
CVSS 8.8
Freescout < 1.8.186 - Insecure Deserialization
CVSS 8.8