Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2026-52370

AI Predicted 6.1 Difficulty: Easy
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2026-52370

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: CVE Program / CVE List V5
Vulnerability Description
A reflected cross-site scripting (XSS) vulnerability in the Forum posting function of O2OA v10 allows attackers to execute arbitrary Javascript in the context of the victim's browser via a crafted URL.
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2026-52370

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-52370

登录查看更多情报信息。

Vendor Pages for CVE-2026-52370 (1)

Other References for CVE-2026-52370 (1)

Same Patch Batch · n/a · 2026-08-04 · 17 CVEs total

CVE-2026-678577.5 HIGHOpen62541 1.5.5 客户端越界读取漏洞
CVE-2026-678617.5 HIGHopen62541<=1.5.5远程拒绝服务漏洞
CVE-2026-678587.5 HIGHopen62541 1.5.5 本地发现服务器缓存溢出致DoS
CVE-2026-678597.5 HIGHopen62541 v1.5.5缓冲区溢出导致拒绝服务
CVE-2026-188165.0 MEDIUMBaserow 2FA Verify Endpoint views.py verify improper authentication
CVE-2026-188194.3 MEDIUMRackTables cross-site request forgery
CVE-2026-188172.2 LOWBaserow Inactive Non-Staff User serializers.py BaserowImpersonateAuthTokenSerializer impro
CVE-2025-29296H3C多款设备API命令注入漏洞
CVE-2026-67979NASA cFS v7.0.1访问控制漏洞致任意代码执行
CVE-2026-51400Vim <=9.2.0389本地任意代码执行漏洞
CVE-2026-51401Vim <=9.2.0389 本地代码执行漏洞
CVE-2026-67856open62541 <=1.5.5拒绝服务漏洞
CVE-2026-67855open62541堆Use-After-Free致远程拒绝服务
CVE-2026-51144MailZen v2.62-2.63跨站脚本漏洞
CVE-2026-67862open62541 1.5.5 缓冲区溢出导致拒绝服务
CVE-2026-67860open62541 1.5.5 历史读取内存后端堆缓冲区溢出

IV. Related Vulnerabilities

V. Comments for CVE-2026-52370

No comments yet


Leave a comment