Known Vulnerabilities for Web Help Desk by Webhelpdesk
Listed below are 2 of the newest known vulnerabilities associated with "Web Help Desk" by "Webhelpdesk".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-57652 json | Unauthenticated Insecure Direct Object References (IDOR) in JS Help Desk <= 3.1.0 versions. | Not Provided | 2026-06-26 | 2026-06-26 |
| CVE-2026-56054 json | Subscriber Arbitrary File Deletion in JS Help Desk <= 3.1.1 versions. | Not Provided | 2026-06-25 | 2026-06-25 |
| CVE-2026-53596 json | FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Prior to version 1.8.224, the FreeScout he... | Not Provided | 2026-07-20 | 2026-07-21 |
| CVE-2026-53595 json | FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Prior to version 1.8.224, the public endpo... | Not Provided | 2026-07-20 | 2026-07-21 |
| CVE-2026-53594 json | FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. FreeScout's `Manage -> Logs -> App Logs` f... | Not Provided | 2026-07-20 | 2026-07-21 |
| CVE-2026-53593 json | FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Prior to version 1.8.224, the denylist tha... | Not Provided | 2026-07-20 | 2026-07-21 |
| CVE-2026-53592 json | FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. A Prototype Pollution condition in the `ge... | Not Provided | 2026-07-20 | 2026-07-21 |
| CVE-2026-53591 json | FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Prior to version 1.8.223, an unauthenticat... | Not Provided | 2026-07-20 | 2026-07-20 |
| CVE-2026-50703 json | A Stored Cross-Site Scripting (XSS) vulnerability exists in Frappe Framework version 17.0.0-dev due to improper neutralizatio... | Not Provided | 2026-06-24 | 2026-06-24 |
| CVE-2026-48887 json | Unauthenticated Broken Access Control in JS Help Desk <= 3.0.9 versions. | Not Provided | 2026-06-15 | 2026-06-15 |