Upstreamworks develops the Upstream Works on Finesse application, a modestly represented product in the vulnerability landscape where observed disclosures center on cross-site scripting and related input-neutralization issues in web-facing contexts. Live severity, exploitation, and exposure details are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Upstreamworks over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-37462MEDIUM A stored Cross-Site Scripting (XSS) vulnerability in the Chat gadget in Upstream Works Agent Desktop for Cisco Finesse through 4.2.12 and 5.0 allows remote attackers to inject arbi | Apr 10, 2023 | 5.4 | 20 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Upstreamworks.
Media articles that mention a CVE ID that affects a product developed by Upstreamworks — matched by CVE ID, not by vendor name.