CVEs we hold for Freescout-help-desk
Records whose assigning authority named Freescout-help-desk as the affected vendor. Newest identifiers first, capped at 200.
CVE-2026-53596FreeScout has unrestricted file upload without rate limiting that leads to resource exhaustion (DoS)freescout-help-desk freescout
CVE-2026-53595FreeScout vulnerable to anonymous account takeover via /user-setup empty invite_hash on MySQLfreescout-help-desk freescout
CVE-2026-53594FreeScout has Arbitrary File Read in App Logs Viewer via Forged Encrypted Pathfreescout-help-desk freescout
CVE-2026-53593FreeScout Vulnerable to Authenticated Remote Code Execution via incomplete upload extension denylist (.pht) — bypass of…freescout-help-desk freescout
CVE-2026-53592FreeScout vulnerable to prototype pollution in getQueryParamfreescout-help-desk freescout
CVE-2026-53591FreeScout Vulnerable to Unauthenticated Conversation Thread Injection via HMAC Length Bypass in FetchEmailsfreescout-help-desk freescout
CVE-2026-48812FreeScout Allows Unauthenticated Access to Legacy Attachment Filesfreescout-help-desk freescout
CVE-2026-48811FreeScout: Thread Deletion Bypasses Mailbox Access Revocationfreescout-help-desk freescout
CVE-2026-48810FreeScout: Thread Edit Authorization Bypass via Missing Mailbox Checkfreescout-help-desk freescout
CVE-2026-47123FreeScout: Agent Impersonation via Missing HMAC Verification on Notification Reply Message-ID Pathfreescout-help-desk freescout
CVE-2026-45295FreeScout Vulnerable to Unauthenticated Thread Read-Status Manipulation and Conversation Enumeration via Open Tracking…freescout-help-desk freescout
CVE-2026-45294FreeScout: User Account Enumeration via Password Reset Response Differentiationfreescout-help-desk freescout
CVE-2026-41906FreeScout: Conversation Change-Customer Cross-Mailbox Authorization Bypassfreescout-help-desk freescout
CVE-2026-41905FreeScout vulnerable to SSRF via Helper::sanitizeRemoteUrl: redirect destination not re-validated, allowing internal…freescout-help-desk freescout
CVE-2026-41904FreeScout Stored XSS vulnerability in mailbox auto-reply: payload reaches every customer's email client (no CSP)…freescout-help-desk freescout
CVE-2026-41903FreeScout IDOR Vulnerability: PERM_EDIT_USERS allows modifying any user's notification subscriptions (incomplete fix of…freescout-help-desk freescout
CVE-2026-41902FreeScout's user invitation hash never expires: permanent unauthenticated account takeover if invite link leaksfreescout-help-desk freescout
CVE-2026-41194FreeScout's Mailbox OAuth disconnect uses a state-changing GET and is CSRFablefreescout-help-desk freescout
CVE-2026-41193FreeScout has Zip Slip path traversal in module installation that allows arbitrary file write leading to RCEfreescout-help-desk freescout
CVE-2026-41192FreeScout's client-controlled attachment IDs allow deletion of existing conversation attachmentsfreescout-help-desk freescout
CVE-2026-41191FreeScout's signature only mailbox permission allows unauthorized mailbox chat setting changesfreescout-help-desk freescout
CVE-2026-41190FreeScout has assigned-only visibility bypass via save_draft that allows hidden conversation draft injectionfreescout-help-desk freescout
CVE-2026-41189FreeScout has assigned-only visibility bypass that allows editing hidden customer-authored threadsfreescout-help-desk freescout
CVE-2026-41183FreeScout allows non-folder conversation queries to disclose assigned-only hidden conversationsfreescout-help-desk freescout
CVE-2026-40592FreeScout's cross-user undo reply allows mailbox peers to recall another agent's outbound replyfreescout-help-desk freescout
CVE-2026-40591FreeScout: Improper Authorization in Phone Conversation Creation Enables Cross-Mailbox Hidden Customer Modificationfreescout-help-desk freescout
CVE-2026-40590FreeScout's Customer AJAX Create Modifies Hidden Existing Customerfreescout-help-desk freescout
CVE-2026-40570FreeScout's Missing Authorization in load_customer_info Allows Any Authenticated User to Access Full Customer PIIfreescout-help-desk freescout
CVE-2026-40569FreeScout's Mass Assignment in Mailbox Connection Settings Enables Silent Email Exfiltrationfreescout-help-desk freescout
CVE-2026-40568FreeScout Vulnerable to XSS via Mailbox Signature Due to Incomplete HTML Sanitizationfreescout-help-desk freescout
CVE-2026-40567FreeScout has HTML Injection in Outgoing Emails via Unsanitized Customer Name in Signature Variablesfreescout-help-desk freescout
CVE-2026-40566FreeScout vulnerable to SSRF via IMAP/SMTP Connection Test Endpointsfreescout-help-desk freescout
CVE-2026-40565FreeScout has Stored XSS / CSS Injection via linkify() — Unescaped URL in Anchor hreffreescout-help-desk freescout
CVE-2026-40498FreeScout has Authentication Bypass and Information Disclosure in SystemController via /system/cronfreescout-help-desk freescout
CVE-2026-40497FreeScout Vulnerable to CSS Injection via Stored Style Tag in Mailbox Signature (CSRF Token Exfiltration)freescout-help-desk freescout
CVE-2026-40496FreeScout has Predictable Attachment Token that Allows Unauthenticated Private File Download via Brute Forcefreescout-help-desk freescout
CVE-2026-39384FreeScout Customer Merge Cross-Mailbox Authorization Bypassfreescout-help-desk freescout
CVE-2026-35584FreeScout has an Unauthenticated IDOR in Open Tracking Endpoint Allows Cross-Conversation Thread Manipulation and…freescout-help-desk freescout
CVE-2026-34443FreeScout: SSRF protection bypass via broken CIDR check in checkIpByMask()freescout-help-desk freescout
CVE-2026-34442FreeScout: Host Header Injection Leading to External Resource Loading and Open Redirect in FreeScoutfreescout-help-desk freescout
CVE-2026-32754FreeScout: Stored XSS via Unescaped Email Template Rendering ({!! $thread->body !!})freescout-help-desk freescout
CVE-2026-32753FreeScout: Stored XSS through SVG file upload with filter bypassfreescout-help-desk freescout
CVE-2026-32752FreeScout: Broken Access Control in ThreadPolicy — Any User Can Read/Edit All Customer Messagesfreescout-help-desk freescout
CVE-2026-28289FreeScout 1.8.206 Patch Bypass for CVE-2026-27636 via Zero-Width Space Character Leads to Remote Code Executionfreescout-help-desk freescout
CVE-2026-27637FreeScout's Predictable Authentication Token Enables Account Takeoverfreescout-help-desk freescout
CVE-2026-27636FreeScout: Missing .htaccess in Restricted File Extensions Allows Remote Code Execution on Apachefreescout-help-desk freescout
CVE-2025-58163FreeScout's deserialization of untrusted data can lead to Remote Code Executionfreescout-help-desk freescout
CVE-2025-54366FreeScout's deserialization of untrusted data leads to Remote Code Executionfreescout-help-desk freescout
CVE-2025-48389FreeScout Vulnerable to Deserialization of Untrusted Datafreescout-help-desk freescout
CVE-2025-48388FreeScout Has Insufficient Protection Against CRLF-injectionfreescout-help-desk freescout
73 records, read from the index as it stood on 20 Sep 2026. Every row opens the record it names, and every value on that record opens its own receipt.
Everything on this page is free. Public data. Withholding it protects nothing.