Medium severity6.1OSV Advisory· Published Mar 7, 2019· Updated Jun 17, 2026
CVE-2018-16808
CVE-2018-16808
Description
An issue was discovered in Dolibarr through 7.0.0. There is Stored XSS in expensereport/card.php in the expense reports plugin via the comments parameter, or a public or private note.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
dolibarr/dolibarrPackagist | < 7.0.1 | 7.0.1 |
Affected products
3Patches
Vulnerability mechanics
References
3- github.com/Dolibarr/dolibarr/issues/9449nvdExploitThird Party AdvisoryWEB
- github.com/advisories/GHSA-r3r5-fqfm-9wrhghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2018-16808ghsaADVISORY
News mentions
0No linked articles in our index yet.