Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 07 May 2026 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Workflowfirst
Workflowfirst staffwiki |
|
| CPEs | cpe:2.3:a:workflowfirst:staffwiki:7.0.1.19219:*:*:*:*:*:*:* | |
| Vendors & Products |
Workflowfirst
Workflowfirst staffwiki |
Tue, 31 Mar 2026 03:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Cross‑Site Scripting in Staffwiki v7.0.1.19219 |
Mon, 30 Mar 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Sun, 29 Mar 2026 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Cross‑Site Scripting in Staffwiki v7.0.1.19219 | |
| Weaknesses | CWE-79 |
Fri, 27 Mar 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Cross‑Site Scripting via wff_cols_pref.css.aspx in StaffWiki v7.0.1.19219 | |
| Weaknesses | CWE-79 |
Fri, 27 Mar 2026 09:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Cross‑Site Scripting via wff_cols_pref.css.aspx in StaffWiki v7.0.1.19219 | |
| Weaknesses | CWE-79 |
Fri, 27 Mar 2026 08:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Cmoncrook
Cmoncrook staffwiki |
|
| Vendors & Products |
Cmoncrook
Cmoncrook staffwiki |
Thu, 26 Mar 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A cross-site scripting (XSS) vulnerability in the wff_cols_pref.css.aspx endpoint of staffwiki v7.0.1.19219 allows attackers to execute arbitrary Javascript in the context of the user's browser via a crafted HTTP request. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-03-30T14:56:27.205Z
Reserved: 2026-03-04T00:00:00.000Z
Link: CVE-2026-29969
Updated: 2026-03-30T13:53:50.388Z
Status : Analyzed
Published: 2026-03-26T19:16:59.600
Modified: 2026-05-07T18:57:08.240
Link: CVE-2026-29969
No data.
OpenCVE Enrichment
Updated: 2026-03-30T20:57:50Z