← לוח פגיעויות

CVE-2026-8142

בינונית 6.5

תיאור (מקור, אנגלית)

VINCE versions 3.0.38 and earlier do not properly verify the From address authenticity due to encoding confusion and use the from address for automated actions such as Ticket creation or Ticket updates.

מדדים

CVSS 3.1
6.5 (MEDIUM) מקור הציון: CNA CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
EPSS — סבירות ניצול
0% (אחוזון 000) נכון ל-1/8/2026

קישורים