CVE-2026-36341
Cross-Site Scripting (XSS) vulnerability exists in Webkul Krayin CRM v2.1.5. The application fails to sanitize user-supplied input in the comment field during Activity creation on the /admin/activities/create endpoint
More information : https://cyber.spool.co.jp/vulnerabilities/cve-2026-36341/
