CVE-2026-41183
- EPSS 0.22%
- Veröffentlicht 21.04.2026 17:16:57
- Zuletzt bearbeitet 22.04.2026 21:10:14
FreeScout is a free self-hosted help desk and shared mailbox. Prior to version 1.8.215, the assigned-only restriction is applied to direct conversation view and folder queries, but not to non-folder query builders. Global search and the AJAX filter p...
CVE-2026-40592
- EPSS 0.24%
- Veröffentlicht 21.04.2026 17:16:57
- Zuletzt bearbeitet 22.04.2026 21:10:14
FreeScout is a free self-hosted help desk and shared mailbox. Prior to version 1.8.214, the undo-send route `GET /conversation/undo-reply/{thread_id}` checks only whether the current user can view the parent conversation. It does not verify that the ...
CVE-2026-40591
- EPSS 0.21%
- Veröffentlicht 21.04.2026 17:16:56
- Zuletzt bearbeitet 22.04.2026 21:10:14
FreeScout is a free self-hosted help desk and shared mailbox. Prior to version 1.8.214, the phone-conversation creation flow accepts attacker-controlled `customer_id`, `name`, `to_email`, and `phone` values and resolves the target customer in the bac...
CVE-2026-40590
- EPSS 0.21%
- Veröffentlicht 21.04.2026 17:16:56
- Zuletzt bearbeitet 22.04.2026 21:10:14
FreeScout is a free self-hosted help desk and shared mailbox. Prior to version 1.8.214, the Change Customer modal exposes a “Create a new customer” flow via POST /customers/ajax with action=create. Under limited visibility, the endpoint drops unique-...
CVE-2026-40589
- EPSS 0.24%
- Veröffentlicht 21.04.2026 17:16:56
- Zuletzt bearbeitet 22.04.2026 21:10:14
FreeScout is a free self-hosted help desk and shared mailbox. Prior to version 1.8.214, a low-privileged agent can edit a visible customer and add an email address already owned by a hidden customer in another mailbox. The server discloses the hidden...
- EPSS 0.3%
- Veröffentlicht 21.04.2026 17:16:55
- Zuletzt bearbeitet 22.04.2026 21:10:14
FreeScout is a free self-hosted help desk and shared mailbox. Versions prior to 1.8.213 have a mass assignment vulnerability in the mailbox connection settings endpoints of FreeScout (`connectionIncomingSave()` at `app/Http/Controllers/MailboxesContr...
CVE-2026-40570
- EPSS 0.25%
- Veröffentlicht 21.04.2026 17:16:55
- Zuletzt bearbeitet 22.04.2026 21:10:14
FreeScout is a free self-hosted help desk and shared mailbox. Prior to version 1.8.213, the `load_customer_info` action in `POST /conversation/ajax` returns complete customer profile data to any authenticated user without verifying mailbox access. An...
CVE-2026-41194
- EPSS 0.12%
- Veröffentlicht 21.04.2026 17:16:50
- Zuletzt bearbeitet 22.04.2026 21:08:48
FreeScout is a free self-hosted help desk and shared mailbox. Prior to version 1.8.215, the mailbox OAuth disconnect action is implemented as `GET /mailbox/oauth-disconnect/{id}/{in_out}/{provider}`. It removes stored OAuth metadata from the mailbox ...
CVE-2026-41193
- EPSS 0.39%
- Veröffentlicht 21.04.2026 17:15:26
- Zuletzt bearbeitet 22.04.2026 21:10:14
FreeScout is a free self-hosted help desk and shared mailbox. Prior to version 1.8.215, FreeScout's module installation feature extracts ZIP archives without validating file paths, allowing an authenticated admin to write files arbitrarily on the ser...
CVE-2026-41192
- EPSS 0.24%
- Veröffentlicht 21.04.2026 17:12:42
- Zuletzt bearbeitet 22.04.2026 21:10:14
FreeScout is a free self-hosted help desk and shared mailbox. Prior to version 1.8.215, the reply and draft flows trust client-supplied encrypted attachment IDs. Any IDs present in `attachments_all[]` but omitted from retained lists are decrypted and...