Vendor
medium
advisory
DivvyDrive Stored XSS Vulnerability
2 rules 1 TTP 1 CVEDivvyDrive versions 4.8.2.9 before 4.8.3.2 are susceptible to stored cross-site scripting (XSS) due to improper neutralization of user-supplied input during web page generation, potentially allowing attackers to execute arbitrary JavaScript in a user's browser.
DivvyDrive
xss
stored-xss
web-application
2r
1t
1c
medium
advisory
DivvyDrive Cross-Site Scripting (XSS) Vulnerability (CVE-2026-6002)
2 rules 1 TTP 1 CVE 1 IOCDivvyDrive versions 4.8.2.9 before 4.8.3.2 are susceptible to cross-site scripting (XSS) due to improper neutralization of script-related HTML tags, potentially allowing an attacker to inject malicious scripts.
DivvyDrive
xss
cve-2026-6002
web-application
2r
1t
1c
1i
high
advisory
DivvyDrive Cross-Site Request Forgery Vulnerability (CVE-2026-5791)
2 rules 1 TTP 1 CVEDivvyDrive versions 4.8.2.9 through 4.8.3.2 are susceptible to cross-site request forgery (CSRF), allowing an attacker to execute unauthorized actions on behalf of an authenticated user.
DivvyDrive
csrf
web-application
vulnerability
2r
1t
1c