Vulnerabilities > Easycorp > Zentao > 18.3

DATE CVE VULNERABILITY TITLE RISK
2023-11-02 CVE-2023-46475 Cross-site Scripting vulnerability in Easycorp Zentao 18.3
A Stored Cross-Site Scripting vulnerability was discovered in ZenTao 18.3 where a user can create a project, and in the name field of the project, they can inject malicious JavaScript code.
network
low complexity
easycorp CWE-79
5.4