All 6 CVE vulnerabilities found in GestSup, with AI-generated Chinese analysis, references, and POCs.
Vendor: GestSup
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-100389 | GestSup before 3.2.61 Remote Code Execution via IMAP Attachment CWE-434 | 8.1 | High | 2026-09-25 |
| CVE-2026-22196 | GestSup < 3.2.60 SQL Injection in Ticket Creation CWE-89 | 8.1 | - | 2026-01-09 |
| CVE-2026-22198 | GestSup < 3.2.60 Stored XSS in API Error Logs CWE-79 | 6.1 | - | 2026-01-09 |
| CVE-2026-22197 | GestSup < 3.2.60 Multiple SQL Injections in Asset List CWE-89 | 8.1 | - | 2026-01-09 |
| CVE-2026-22195 | GestSup < 3.2.60 SQL Injection in Search Bar CWE-89 | 8.8 | - | 2026-01-09 |
| CVE-2026-22194 | GestSup <= 3.2.60 CSRF Allows Privileged Actions CWE-352 | 8.8 | - | 2026-01-09 |
All 6 known CVE vulnerabilities affecting GestSup with full Chinese analysis, references, and POCs where available.