FreeScout is a free self-hosted help desk and shared mailbox. Prior to version 1.8.215, the assigned-only restriction is applied to direct conversation view and folder queries, but not to non-folder query builders. Global search and the AJAX filter path still reveal conversations that should be hidden. Version 1.8.215 fixes the vulnerability.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-04-21 17:16
Updated : 2026-06-17 10:46
NVD link : CVE-2026-41183
Mitre link : CVE-2026-41183
CVE.ORG link : CVE-2026-41183
JSON object : View
Products Affected
No product.
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
