Vulnerabilities (CVE)

Filtered by vendor Thepluginpeople Subscribe
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-25363 1 Thepluginpeople 1 Enterprise Mail Handler 2025-04-03 N/A 6.5 MEDIUM
An authenticated stored cross-site scripting (XSS) vulnerability in The Plugin People Enterprise Mail Handler for Jira Data Center (JEMH) before v4.1.69-dc allows attackers with Administrator privileges to execute arbitrary Javascript in context of a user's browser via injecting a crafted payload into the HTML field of a template.