Security Advisory

CVE-2026-22881

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-02-02 06:37:17
Last updated 2026-02-02 16:28:15
Assigner jpcert
State PUBLISHED

Description

Cross-site scripting vulnerability exists in Message function of Cybozu Garoon 5.15.0 to 6.0.3, which may allow an attacker to reset arbitrary users’ passwords.