← العودة للجدول
CVE-2026-32703
CVE-2026-32703 — VulnCheck: OpenProject is an open-source, web-based project management software.
📅 2026-03-18
🔴 Critical 🔥 No VulnCheck Exploit Web CVSS 9

📋 الوصف الكامل

OpenProject is an open-source, web-based project management software. In versions prior to 16.6.9, 17.0.6, 17.1.3, and 17.2.1, the Repositories module did not properly escape filenames displayed from repositories. This allowed an attacker with push access into the repository to create commits with filenames that included HTML code that was injected in the page without proper sanitation. This allow

💻 الأنظمة المتأثرة

VulnCheck: OpenProject is

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2026-32703

📡 المصدر

VulnCheck

✅ الحلول والتخفيف

Update to v16.6.9

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←