CVE-2026-23722 | LabRedesCefetRJ WeGIA up to 3.6.1 GET Parameter insere_despacho.php id_memorando cross site scripting (GHSA-g7hh-6qj7-mcqf / EUVD-2026-3115)
A vulnerability, which was classified as problematic, has been found in LabRedesCefetRJ WeGIA up to 3.6.1. Affected by this vulnerability is an unknown functionality of the file html/memorando/insere_despacho.php of the component GET Parameter Handler. This manipulation of the argument id_memorando causes cross site scripting.
This vulnerability is handled as CVE-2026-23722. The attack can be initiated remotely. There is not any exploit available.
It is advisable to upgrade the affected component.