Vulnerabilities (CVE)

Filtered by vendor Cryptocat Project Subscribe
Filtered by product Cryptocat
Total 17 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2013-4108 1 Cryptocat Project 1 Cryptocat 2023-12-10 7.5 HIGH 9.8 CRITICAL
Multiple unspecified vulnerabilities in Cryptocat Project Cryptocat 2.0.18 have unknown impact and attack vectors.
CVE-2013-4106 1 Cryptocat Project 1 Cryptocat 2023-12-10 4.3 MEDIUM 6.1 MEDIUM
A Cross-site scripting (XSS) vulnerability exists in Conversation Overview Nickname in Cryptocat before 2.0.22.
CVE-2013-4109 1 Cryptocat Project 1 Cryptocat 2023-12-10 4.3 MEDIUM 6.1 MEDIUM
An unspecified cross-site scripting (XSS) vulnerability exists in Cryptocat Message Handling 1.1.165.
CVE-2013-4107 1 Cryptocat Project 1 Cryptocat 2023-12-10 4.3 MEDIUM 6.1 MEDIUM
Cryptocat before 2.0.22: cryptocat.js handlePresence() has cross site scripting
CVE-2013-2257 1 Cryptocat Project 1 Cryptocat 2023-12-10 5.0 MEDIUM 7.5 HIGH
Cryptocat before 2.0.42 has Group Chat ECC Private Key Generation Brute Force Weakness
CVE-2013-2259 1 Cryptocat Project 1 Cryptocat 2023-12-10 7.5 HIGH 9.8 CRITICAL
Cryptocat before 2.0.22 has Arbitrary Code Execution on Firefox Conversation Overview
CVE-2013-4100 1 Cryptocat Project 1 Cryptocat 2023-12-10 5.0 MEDIUM 7.5 HIGH
Cryptocat before 2.0.22 has Remote Denial of Service via username
CVE-2013-4104 1 Cryptocat Project 1 Cryptocat 2023-12-10 5.0 MEDIUM 7.5 HIGH
Cryptocat before 2.0.22 has weak encryption in the Socialist Millionnaire Protocol
CVE-2013-2258 1 Cryptocat Project 1 Cryptocat 2023-12-10 5.0 MEDIUM 5.3 MEDIUM
Cryptocat before 2.0.22 has Nickname User Impersonation
CVE-2013-4105 1 Cryptocat Project 1 Cryptocat 2023-12-10 5.0 MEDIUM 7.5 HIGH
Cryptocat before 2.0.22 has Multiparty Encryption Scheme Information Disclosure
CVE-2013-2262 1 Cryptocat Project 1 Cryptocat 2023-12-10 5.0 MEDIUM 7.5 HIGH
Cryptocat strophe.js before 2.0.22 has information disclosure
CVE-2013-4103 1 Cryptocat Project 1 Cryptocat 2023-12-10 7.5 HIGH 9.8 CRITICAL
Cryptocat before 2.0.22 has Remote Script Injection due to improperly sanitizing user input
CVE-2013-4102 1 Cryptocat Project 1 Cryptocat 2023-12-10 6.4 MEDIUM 9.1 CRITICAL
Cryptocat before 2.0.22 strophe.js Math.random() Random Number Generator Weakness
CVE-2013-4101 1 Cryptocat Project 1 Cryptocat 2023-12-10 5.0 MEDIUM 5.3 MEDIUM
Cryptocat before 2.0.22 Link Markup Decorator HTML Handling Weakness
CVE-2013-4110 1 Cryptocat Project 1 Cryptocat 2023-12-10 5.0 MEDIUM 5.3 MEDIUM
Cryptocat has an Unspecified Chat Participant User List Disclosure
CVE-2013-2260 1 Cryptocat Project 1 Cryptocat 2023-12-10 5.0 MEDIUM 9.8 CRITICAL
Cryptocat before 2.0.22: Cryptocat.random() Function Array Key has Entropy Weakness
CVE-2013-2261 1 Cryptocat Project 1 Cryptocat 2023-12-10 5.0 MEDIUM 7.5 HIGH
Cryptocat before 2.0.22 Chrome Extension 'img/keygen.gif' has Information Disclosure