Search Results (2 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2026-50875 1 Deck9 1 Deck9 Input 2026-06-26 8.1 High
Incorrect access control in the /{form}/webhooks/{webhook} endpoint of Deck9 Input v2.0.1 allows authenticated attackers to arbitrarily modify or delete another tenant's webhook via a crafted request.
CVE-2026-50876 1 Deck9 1 Deck9 Input 2026-06-26 5.4 Medium
A cross-site scripting (XSS) vulnerability in Deck9 Input v2.0.1 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.