Description
Mirotalk before commit 9de226 was discovered to contain a DOM-based cross-site scripting (XSS) vulnerability which allows attackers to execute arbitrary code via sending crafted payloads in messages to other users over RTC connections.
Related CPE's
Could not find any relations
References
Weaknesses
134c704f-9b21-4f2e-91b3-4a467353bcc0
Secondary
CWE-79
CVSS impact metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N
4.7 · Medium
Information
Source identifier
Vulnerability status
Awaiting analysis
Published
2024-10-11T15:15:04.080Z
1 year agoLast modified
2024-11-04T19:35:07.840Z
1 year ago