CVE-2026-56732 UNKNOWN

CVE-2026-56732

Published: 2026-09-25

Description

Zammad is a web based open source helpdesk/customer support system. Prior to 7.0.2, vulnerability in Zammad's HTML sanitization allows injection of specific HTML elements into ticket bodies. When another user views the crafted ticket, the injected element can trigger a logout request, terminating the viewer's session. This vulnerability is fixed in 7.0.2.

AI Intelligence Brief

AI Intelligence

Analyzing vulnerability vectors…