VDB
CVE-2021-26263
CVE-2021-26263
PUBLISHED
CVSS 6.099999904632568 MEDIUM
Cross-site scripting (XSS) issue in Discuss app of Odoo Community 14.0 through 15.0, and Odoo Enterprise 14.0 through 15.0, allows remote attackers to inject arbitrary web script in the browser of a victim, by posting crafted contents.
EPSS 0.56% · 44.2th percentile
Risk Scores
CVSS 3.1
6.099999904632568
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
EPSS Score
0.56%
44.2th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Bitnami | odoo | 15.0.0, 14.0.0 |
| Bitnami | odoo | 15.0.0, 14.0.0 |
Timeline
- Apr 25, 2023 CVE Published
- Apr 26, 2023 EPSS Score
- Jun 2, 2023 EPSS Score
- Jul 10, 2023 EPSS Score
- Aug 16, 2023 EPSS Score
- Sep 23, 2023 EPSS Score
- Oct 30, 2023 EPSS Score
- Dec 7, 2023 EPSS Score
- Jan 13, 2024 EPSS Score
- Feb 20, 2024 EPSS Score
- Mar 28, 2024 EPSS Score
- May 5, 2024 EPSS Score