[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2019-10067":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-05T02:55:30.529Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":44,"aliases":45,"duplicate_of":9,"upstream":46,"downstream":47,"duplicates":58,"related":59,"reserved_at":9,"published_at":63,"modified_at":64,"state":65,"summary":66,"references_raw":75,"kevs":98,"epss":99,"epss_history":102,"metrics":362,"affected":373},"CVE-2019-10067","An issue was discovered in Open Ticket Request System (OTRS) 7.x through 7.0.6 and Community Edition 5.0.x through 5.0.35 and 6.0.x through 6.0.17. An attacker who is logged into OTRS as an agent user with appropriate permissions may manipulate the URL to cause execution of JavaScript in the context of OTRS.",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":18,"capec":19},"CWE-79","Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users.","weakness","Stable","Base","High",[20,24,28,32,36,40],{"id":21,"name":22,"techniques":23},"CAPEC-209","XSS Using MIME Type Mismatch",[],{"id":25,"name":26,"techniques":27},"CAPEC-588","DOM-Based XSS",[],{"id":29,"name":30,"techniques":31},"CAPEC-591","Reflected XSS",[],{"id":33,"name":34,"techniques":35},"CAPEC-592","Stored XSS",[],{"id":37,"name":38,"techniques":39},"CAPEC-63","Cross-Site Scripting (XSS)",[],{"id":41,"name":42,"techniques":43},"CAPEC-85","AJAX Footprinting",[],[],[],[],[48,50,52,54,56],{"_key":49},"UBUNTU-CVE-2019-10067",{"_key":51},"OPENSUSE-SU-2020:1509-1",{"_key":53},"OPENSUSE-SU-2020:0551-1",{"_key":55},"OPENSUSE-SU-2020:1475-1",{"_key":57},"DEBIAN-CVE-2019-10067",[],[60,61,62],{"_key":51},{"_key":53},{"_key":55},"2019-05-21T23:09:13.000Z","2024-08-04T22:10:09.213Z","Modified",{"cisa_kev":67,"cisa_ransomware":67,"cisa_vendor":9,"epss_severity":68,"epss_score":69,"severity":70,"severity_score":71,"severity_version":72,"severity_source":73,"severity_vector":74,"severity_status":65},false,"low",0.00378,"medium",5.4,"v3.1","nvd","CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N",[76,84,90,94],{"url":77,"sources":78,"tags":80},"https://community.otrs.com/security-advisory-2019-05-security-update-for-otrs-framework/",[79,73],"cve.org",[81,82,83],"X Refsource CONFIRM","Patch","Vendor Advisory",{"url":85,"sources":86,"tags":87},"http://lists.opensuse.org/opensuse-security-announce/2020-04/msg00038.html",[79,73],[83,88,89],"X Refsource SUSE","Broken Link",{"url":91,"sources":92,"tags":93},"http://lists.opensuse.org/opensuse-security-announce/2020-09/msg00066.html",[79,73],[83,88,89],{"url":95,"sources":96,"tags":97},"http://lists.opensuse.org/opensuse-security-announce/2020-09/msg00077.html",[79,73],[83,88,89],[],{"date":100,"score":69,"percentile":101},"2026-06-04",0.59655,[103,107,110,113,116,118,120,123,126,129,132,135,138,140,143,146,149,152,155,157,160,163,166,169,171,174,177,180,183,186,189,192,195,198,201,204,206,209,212,215,217,220,223,226,229,232,234,236,239,242,245,248,251,254,258,261,264,267,270,273,276,279,282,285,288,291,294,297,300,303,306,309,312,315,318,321,324,327,330,333,336,339,342,345,347,349,352,355,358,360],{"date":104,"score":105,"percentile":106},"2025-11-04",0.00401,0.60019,{"date":108,"score":105,"percentile":109},"2025-11-05",0.60003,{"date":111,"score":105,"percentile":112},"2025-11-06",0.60006,{"date":114,"score":105,"percentile":115},"2025-11-07",0.60023,{"date":117,"score":105,"percentile":115},"2025-11-08",{"date":119,"score":105,"percentile":106},"2025-11-09",{"date":121,"score":105,"percentile":122},"2025-11-10",0.59995,{"date":124,"score":105,"percentile":125},"2025-11-11",0.60008,{"date":127,"score":105,"percentile":128},"2025-11-12",0.60033,{"date":130,"score":105,"percentile":131},"2025-11-13",0.60038,{"date":133,"score":105,"percentile":134},"2025-11-14",0.60047,{"date":136,"score":105,"percentile":137},"2025-11-15",0.60037,{"date":139,"score":105,"percentile":115},"2025-11-16",{"date":141,"score":105,"percentile":142},"2025-11-17",0.60021,{"date":144,"score":105,"percentile":145},"2025-11-18",0.5799,{"date":147,"score":105,"percentile":148},"2025-11-19",0.58006,{"date":150,"score":105,"percentile":151},"2025-11-20",0.57996,{"date":153,"score":105,"percentile":154},"2025-11-21",0.60034,{"date":156,"score":105,"percentile":154},"2025-11-22",{"date":158,"score":105,"percentile":159},"2025-11-23",0.60014,{"date":161,"score":105,"percentile":162},"2025-11-24",0.60012,{"date":164,"score":105,"percentile":165},"2025-11-25",0.60015,{"date":167,"score":105,"percentile":168},"2025-11-26",0.60016,{"date":170,"score":105,"percentile":115},"2025-11-27",{"date":172,"score":105,"percentile":173},"2025-11-28",0.6,{"date":175,"score":105,"percentile":176},"2025-11-29",0.59976,{"date":178,"score":105,"percentile":179},"2025-11-30",0.59967,{"date":181,"score":105,"percentile":182},"2025-12-01",0.60117,{"date":184,"score":105,"percentile":185},"2025-12-02",0.60129,{"date":187,"score":105,"percentile":188},"2025-12-03",0.60133,{"date":190,"score":105,"percentile":191},"2025-12-04",0.59966,{"date":193,"score":105,"percentile":194},"2025-12-05",0.59972,{"date":196,"score":105,"percentile":197},"2025-12-06",0.59962,{"date":199,"score":105,"percentile":200},"2025-12-07",0.59956,{"date":202,"score":105,"percentile":203},"2025-12-08",0.59958,{"date":205,"score":105,"percentile":122},"2025-12-09",{"date":207,"score":105,"percentile":208},"2025-12-10",0.6004,{"date":210,"score":105,"percentile":211},"2025-12-11",0.60059,{"date":213,"score":105,"percentile":214},"2025-12-12",0.60076,{"date":216,"score":105,"percentile":214},"2025-12-13",{"date":218,"score":105,"percentile":219},"2025-12-14",0.60071,{"date":221,"score":105,"percentile":222},"2025-12-15",0.60045,{"date":224,"score":105,"percentile":225},"2025-12-16",0.60067,{"date":227,"score":105,"percentile":228},"2025-12-17",0.60083,{"date":230,"score":105,"percentile":231},"2025-12-18",0.60123,{"date":233,"score":105,"percentile":188},"2025-12-19",{"date":235,"score":105,"percentile":188},"2025-12-20",{"date":237,"score":105,"percentile":238},"2025-12-21",0.6012,{"date":240,"score":105,"percentile":241},"2025-12-22",0.60112,{"date":243,"score":105,"percentile":244},"2025-12-23",0.60124,{"date":246,"score":105,"percentile":247},"2025-12-24",0.60136,{"date":249,"score":105,"percentile":250},"2025-12-25",0.60169,{"date":252,"score":105,"percentile":253},"2025-12-26",0.60163,{"date":255,"score":256,"percentile":257},"2025-12-27",0.00459,0.63487,{"date":259,"score":105,"percentile":260},"2025-12-28",0.60142,{"date":262,"score":105,"percentile":263},"2025-12-29",0.60134,{"date":265,"score":105,"percentile":266},"2025-12-30",0.60148,{"date":268,"score":105,"percentile":269},"2025-12-31",0.6017,{"date":271,"score":105,"percentile":272},"2026-01-01",0.60355,{"date":274,"score":105,"percentile":275},"2026-01-02",0.60341,{"date":277,"score":105,"percentile":278},"2026-01-03",0.60339,{"date":280,"score":105,"percentile":281},"2026-01-04",0.60165,{"date":283,"score":105,"percentile":284},"2026-01-05",0.60153,{"date":286,"score":105,"percentile":287},"2026-01-06",0.60162,{"date":289,"score":105,"percentile":290},"2026-01-07",0.60188,{"date":292,"score":105,"percentile":293},"2026-01-08",0.60214,{"date":295,"score":105,"percentile":296},"2026-01-09",0.60217,{"date":298,"score":105,"percentile":299},"2026-01-10",0.60211,{"date":301,"score":105,"percentile":302},"2026-01-11",0.60193,{"date":304,"score":105,"percentile":305},"2026-01-12",0.60168,{"date":307,"score":105,"percentile":308},"2026-01-13",0.60132,{"date":310,"score":105,"percentile":311},"2026-01-14",0.60172,{"date":313,"score":105,"percentile":314},"2026-01-15",0.60171,{"date":316,"score":105,"percentile":317},"2026-01-16",0.60192,{"date":319,"score":105,"percentile":320},"2026-01-17",0.60187,{"date":322,"score":105,"percentile":323},"2026-01-18",0.60185,{"date":325,"score":105,"percentile":326},"2026-01-19",0.60167,{"date":328,"score":105,"percentile":329},"2026-01-20",0.60177,{"date":331,"score":105,"percentile":332},"2026-01-21",0.60181,{"date":334,"score":105,"percentile":335},"2026-01-22",0.60186,{"date":337,"score":105,"percentile":338},"2026-01-23",0.60224,{"date":340,"score":105,"percentile":341},"2026-01-24",0.60232,{"date":343,"score":105,"percentile":344},"2026-01-25",0.60197,{"date":346,"score":105,"percentile":290},"2026-01-26",{"date":348,"score":105,"percentile":302},"2026-01-27",{"date":350,"score":105,"percentile":351},"2026-01-28",0.60203,{"date":353,"score":105,"percentile":354},"2026-01-29",0.60204,{"date":356,"score":105,"percentile":357},"2026-01-30",0.60205,{"date":359,"score":105,"percentile":299},"2026-01-31",{"date":361,"score":105,"percentile":275},"2026-02-01",[363],{"source":73,"cvss_v2_0":364,"cvss_v3_0":9,"cvss_v3_1":369,"cvss_v4_0":9},{"baseScore":365,"baseSeverity":9,"vectorString":366,"impactScore":367,"exploitabilityScore":368},3.5,"AV:N/AC:M/Au:S/C:N/I:P/A:N",2.9,6.8,{"baseScore":71,"baseSeverity":370,"vectorString":74,"impactScore":371,"exploitabilityScore":372},"MEDIUM",4.5,5.9,[374],{"ecosystem":9,"name":375,"vendor":375,"product":375,"cpe_part":376,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":377},"otrs","a",[378,385,389],{"version":379,"is_range":380,"range_type":381,"version_start":382,"version_start_type":383,"version_end":384,"version_end_type":383,"fixed_in":9},"gte5.0.0_lte5.0.35",true,"cpe","5.0.0","including","5.0.35",{"version":386,"is_range":380,"range_type":381,"version_start":387,"version_start_type":383,"version_end":388,"version_end_type":383,"fixed_in":9},"gte6.0.0_lte6.0.17","6.0.0","6.0.17",{"version":390,"is_range":380,"range_type":381,"version_start":391,"version_start_type":383,"version_end":392,"version_end_type":383,"fixed_in":9},"gte7.0.0_lte7.0.6","7.0.0","7.0.6"]