CVE-2026-97896
Published 25 September 2026 · tracked since 26 September 2026
Description
A vulnerability was identified in krayin laravel-crm up to 2.2.5. This vulnerability affects the function ConfigurationForm::rules of the file packages/Webkul/Admin/src/Http/Requests/ConfigurationForm.php of the component Upload Functionality. The manipulation leads to cross site scripting. The atta
References
- NVD — National Vulnerability Database
- CVE.org record (MITRE)
- CISA Known Exploited Vulnerabilities catalog
Latest tracked vulnerabilities
- CVE-2026-100876 MEDIUM 6.3
- CVE-2026-100875 HIGH 7.3
- CVE-2026-100873 MEDIUM 4.3
- CVE-2026-100874 HIGH 7.3
- CVE-2026-101060 HIGH 8.2
- CVE-2026-101061 MEDIUM 4.7
- CVE-2026-101047 MEDIUM 5.3
- CVE-2026-101057 LOW 3.1
- CVE-2026-101058 MEDIUM 6.9
- CVE-2026-101044 HIGH 7.1