Offensive Sequence
๐@offseq@infosec.exchangeยท
1 min read
๐จ OpenProject CRITICAL XSS (CVE-2026-32703): Attackers with repo push access can inject persistent scripts via filenames, impacting all users viewing affected pages. Patch to 16.6.9/17.0.6/17.1.3/17.2.1+ now! https://radar.offseq.com/threat/cve-2026-32703-cwe-79-improper-neutralization-of-i-f2afc489 #OffSeq #XSS #OpenProject #infosec
Start your own journal on Inkwell
No algorithms, no ads โ just your writing, your way. Customize your space, connect with readers, and join the open social web.
Get started โ it's freeFree to use. Part of the open social web.

Marginalia