Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
5.4
CVE-2026-34497
- EPSS 0.23%
- Veröffentlicht 31.07.2026 17:31:05
- Zuletzt bearbeitet 10.08.2026 19:45:30
Improper neutralization of Script-Related HTML tags in a web page (basic XSS) vulnerability in Johnson Controls FM Systems Employee allows Cross-Site Scripting (XSS). This issue affects FM Systems Employee: before 2025.3.1.
5.4
CVE-2026-34495
- EPSS 0.23%
- Veröffentlicht 31.07.2026 17:30:52
- Zuletzt bearbeitet 10.08.2026 19:49:08
Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Johnson Controls FM Systems Employee allows Stored XSS. This issue affects FM Systems Employee: before 2025.3.1.
9.8
CVE-2026-21662
- EPSS 0.5%
- Veröffentlicht 31.07.2026 17:30:41
- Zuletzt bearbeitet 10.08.2026 19:55:41
Unrestricted upload of file with dangerous type vulnerability in Johnson Controls FM Systems Employee allows Using Malicious Files. This issue affects FM Systems Employee: before 2025.3.1.
1