CVE-2026-54217: TeamDavid: Stored XSS in web application
Tobit Laboratories AG TeamDavid's Webbox application is vulnerable to a stored XSS vulnerability. An attacker can send an email containing malicious JavaScript code. When a user accesses the email, the stored cross-site scripting is triggered. This issue affects TeamDavid through Rollout 524.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-54217?
The severity of CVE-2026-54217 is rated at 45, indicating a moderate risk level.
How do I fix CVE-2026-54217?
To fix CVE-2026-54217, update the TeamDavid Webbox application to the latest version provided by Tobit Laboratories AG.
What type of vulnerability is CVE-2026-54217?
CVE-2026-54217 is identified as a stored cross-site scripting (XSS) vulnerability.
Which users are affected by CVE-2026-54217?
Users who access emails containing malicious JavaScript code in TeamDavid's Webbox application are affected by CVE-2026-54217.
In which version of TeamDavid was CVE-2026-54217 discovered?
CVE-2026-54217 was discovered in TeamDavid through Rollout 524.