CVE-2026-36341 PUBLISHED

Assigner: mitre
Reserved: 06.04.2026 Published: 07.05.2026 Updated: 07.05.2026

Cross-Site Scripting (XSS) vulnerability exists in Webkul Krayin CRM v2.1.5. The application fails to sanitize user-supplied input in the comment field during Activity creation on the /admin/activities/create endpoint

Product Status

Vendor n/a
Product n/a
Versions
  • Version n/a is affected

References

Problem Types

  • n/a text