Description


Mirotalk before commit 9de226 was discovered to contain a DOM-based cross-site scripting (XSS) vulnerability which allows attackers to execute arbitrary code via sending crafted payloads in messages to other users over RTC connections.

Related CPE's


Could not find any relations

Weaknesses


134c704f-9b21-4f2e-91b3-4a467353bcc0

Secondary

CWE-79

CVSS impact metrics


CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N

4.7 · Medium

Information


Source identifier

[email protected]

Vulnerability status

Awaiting analysis

Published

2024-10-11T15:15:04.080Z

1 year ago

Last modified

2024-11-04T19:35:07.840Z

1 year ago