osTicket versions from 1.10 up to 1.17.7 and from 1.18.0 up to 1.18.3 are vulnerable to a stored XSS due to a vulnerable Bootstrap Tooltip component and insufficient HTML sanitization, allowing remote attackers to execute arbitrary JavaScript in Agent or Admin sessions.

Project Subscriptions

Vendors Products
Osticket Subscribe
Osticket Subscribe
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Wed, 22 Jul 2026 10:30:00 +0000

Type Values Removed Values Added
Title Stored XSS via Bootstrap Tooltip in osTicket Enabling Remote JavaScript Execution

Fri, 17 Jul 2026 23:30:00 +0000

Type Values Removed Values Added
Title Stored XSS via Bootstrap Tooltip in osTicket Enabling Remote JavaScript Execution

Wed, 15 Jul 2026 15:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-79
Metrics cvssV3_1

{'score': 5.4, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 14 Jul 2026 18:15:00 +0000

Type Values Removed Values Added
First Time appeared Osticket
Osticket osticket
Vendors & Products Osticket
Osticket osticket

Tue, 14 Jul 2026 16:45:00 +0000

Type Values Removed Values Added
Description osTicket versions from 1.10 up to 1.17.7 and from 1.18.0 up to 1.18.3 are vulnerable to a stored XSS due to a vulnerable Bootstrap Tooltip component and insufficient HTML sanitization, allowing remote attackers to execute arbitrary JavaScript in Agent or Admin sessions.
References

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2026-07-15T14:40:25.525Z

Reserved: 2026-04-06T00:00:00.000Z

Link: CVE-2026-36214

cve-icon Vulnrichment

Updated: 2026-07-15T14:40:16.044Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-07-22T10:15:02Z

Weaknesses