CVE-2026-22198 | GestSup up to 3.2.56 Logs Web Interface /api/v1/ticket.php X-API-KEY cross site scripting (EUVD-2026-1703)
A vulnerability identified as problematic has been detected in GestSup up to 3.2.56. This affects an unknown function of the file /api/v1/ticket.php of the component Logs Web Interface. Performing a manipulation of the argument X-API-KEY results in cross site scripting.
This vulnerability was named CVE-2026-22198. The attack may be initiated remotely. There is no available exploit.