CVE-2020-24881Critical· 9.8▾ AbyssalPoC availableSSRF exists in osTicket before 1.14.3, where an attacker can add malicious file to server or perform port scanning.
▾ Abyssal zone — Critical with a public exploit or in-the-wild use
impact 53.9 · likelihood 14.7 · exploitation 12
A public proof-of-concept already exists for this vulnerability — see Exploit availability below.
Public exploit / PoC code seen in 3 sources. Availability, not in-the-wild use.
Exploit-prediction probability, daily snapshots since Jul 10.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
73%
73% → 73%
Exploit-DB · 1 GitHub repo · Nuclei ×1 (last check)
SSRF exists in osTicket before 1.14.3, where an attacker can add malicious file to server or perform port scanning.
osticket < 1.14.3Upgrade past the affected range:
osticket 1.14.3Connected by shared product, vendor, weakness, or advisory.
CVE-2025-68616High· 7.5WeasyPrint helps web developers to create PDF documents
CVE-2022-32074Medium· 5.4A stored cross-site scripting (XSS) vulnerability in the component audit/class.audit.php of osTicket-plugins - Storage-FS before commit a7842d494889fd5533d13deb3c6a7789768795ae allows attackers to execute arbitrary web scripts or HTML vi…
CVE-2019-14750Medium· 6.1An issue was discovered in osTicket before 1.10.7 and 1.12.x before 1.12.1
CVE-2019-14749High· 8.8An issue was discovered in osTicket before 1.10.7 and 1.12.x before 1.12.1
CVE-2019-14748Medium· 5.4An issue was discovered in osTicket before 1.10.7 and 1.12.x before 1.12.1
CVE-2019-11537Medium· 6.1In osTicket before 1.12, XSS exists via /upload/file.php, /upload/scp/users.php?do=import-users, and /upload/scp/ajax.php/users/import if an agent manager user uploads a crafted .csv file to the User Importer, because file contents can a…