PT-2025-23250 · Freescout · Freescout

Artem Danilov

+5

·

Published

2025-05-13

·

Updated

2025-05-30

·

CVE-2025-48484

CVSS v2.0
6.8
VectorAV:N/AC:L/Au:S/C:C/I:N/A:N
Name of the Vulnerable Software and Affected Versions FreeScout versions prior to 1.8.178
Description The issue is related to Cross-Site Scripting (XSS) attacks due to incorrect input validation and sanitization of user-input data in the conversation POST data body.
Recommendations For versions prior to 1.8.178, update to version 1.8.178 to resolve the issue.

Fix

XSS

Weakness Enumeration

Related Identifiers

BDU:2025-06960
CVE-2025-48484
GHSA-W3J9-7FHQ-M8X7

Affected Products

Freescout