CVE WATCH / VULNERABILITY DETAIL

CVE-2026-97897

LOWCVSS 3.5NVD feed

Published 25 September 2026 · tracked since 26 September 2026

Description

A security flaw has been discovered in Krayin laravel-crm up to 2.2.5. This issue affects some unknown processing of the file Sanitizer.php of the component TinyMCE Media Upload. The manipulation results in cross site scripting. The attack may be performed from remote. Upgrading to version 2.2.6 is

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

CVE-2026-97897 — Vulnerability Details | Logic Encoder
CVE WATCH / VULNERABILITY DETAIL

CVE-2026-97897

LOWCVSS 3.5NVD feed

Published 25 September 2026 · tracked since 26 September 2026

Description

A security flaw has been discovered in Krayin laravel-crm up to 2.2.5. This issue affects some unknown processing of the file Sanitizer.php of the component TinyMCE Media Upload. The manipulation results in cross site scripting. The attack may be performed from remote. Upgrading to version 2.2.6 is

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

[an error occurred while processing this directive]