EIP-2026-119455
PRE-CVEZoho BugTracker - Multiple Persistent Cross-Site Scripting Vulnerabilities
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-119455. PoCs published by LiquidWorm.
AI-analyzed exploit summary This HTML/JavaScript PoC demonstrates stored XSS vulnerabilities in Zoho BugTracker by submitting crafted input to the 'comment' and 'mystatus' parameters via POST requests. The exploit triggers arbitrary script execution in the context of the user's browser session.
Description
Zoho BugTracker - Multiple Persistent Cross-Site Scripting Vulnerabilities
Exploits (1)
This HTML/JavaScript PoC demonstrates stored XSS vulnerabilities in Zoho BugTracker by submitting crafted input to the 'comment' and 'mystatus' parameters via POST requests. The exploit triggers arbitrary script execution in the context of the user's browser session.