📦 Rise Ultimate Project Manager

by Fairsketch

🔍 What is Rise Ultimate Project Manager?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-60378

HIGH CVSS 8.1 Oct 10, 2025

Authenticated users in RISE Ultimate Project Manager & CRM can inject malicious HTML into invoices and messages. This content renders in emails, PDFs, and chat modules sent to clients or team members,...

CVE-2025-41106

MEDIUM CVSS 5.4 Nov 11, 2025

This CVE describes an HTML injection vulnerability in Fairsketch's RISE CRM Framework v3.8.1. Attackers can inject malicious HTML code via the 'first_name' parameter in POST requests to '/clients/save...

CVE-2025-41103

MEDIUM CVSS 5.4 Nov 11, 2025

This CVE describes an HTML injection vulnerability in Fairsketch's RISE CRM Framework v3.8.1. Attackers can inject malicious HTML code via the 'reply_message' parameter in POST requests to '/messages/...

CVE-2025-41104

MEDIUM CVSS 5.4 Nov 11, 2025

An HTML injection vulnerability in Fairsketch's RISE CRM Framework allows attackers to inject malicious HTML code via the 'custom_field_1' parameter in POST requests. This affects users of RISE CRM Fr...

CVE-2025-41105

MEDIUM CVSS 5.4 Nov 11, 2025

This CVE describes an HTML injection vulnerability in Fairsketch's RISE CRM Framework v3.8.1. Attackers can inject malicious HTML code via the 'title' parameter in POST requests to '/tickets/save', po...

CVE-2025-41101

MEDIUM CVSS 5.4 Nov 11, 2025

This CVE describes an HTML injection vulnerability in Fairsketch's RISE CRM Framework that allows attackers to inject malicious HTML code through the 'title' parameter in POST requests to '/projects/s...

CVE-2025-41102

MEDIUM CVSS 5.4 Nov 11, 2025

An HTML injection vulnerability in Fairsketch's RISE CRM Framework v3.8.1 allows attackers to inject malicious HTML code via the 'title' parameter in POST requests to '/events/save'. This affects all ...

CVE-2025-63293

MEDIUM CVSS 6.5 Nov 3, 2025

This vulnerability allows authenticated users to append comments or upload attachments to tickets they are not authorized to view or edit in FairSketch Rise Ultimate Project Manager & CRM. It affects ...

CVE-2025-56807

MEDIUM CVSS 6.1 Sep 29, 2025

This cross-site scripting (XSS) vulnerability in FairSketch RISE Ultimate Project Manager & CRM allows administrators to inject malicious JavaScript when creating folders via the admin dashboard file ...