Critical severity9.8NVD Advisory· Published May 4, 2022· Updated Jun 17, 2026
CVE-2021-42235
CVE-2021-42235
Description
SQL injection in osTicket before 1.14.8 and 1.15.4 login and password reset process allows attackers to access the osTicket administration profile functionality.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
1- github.com/osTicket/osTicket/commit/e28291022e662ffa754e170c09cade7bdadf3fd9nvdPatchThird Party Advisory
News mentions
0No linked articles in our index yet.