Vulnerabilities (CVE)

Filtered by vendor Totaljs Subscribe
Filtered by product Messenger
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-30095 1 Totaljs 1 Messenger 2023-12-10 N/A 5.4 MEDIUM
A stored cross-site scripting (XSS) vulnerability in TotalJS messenger commit b6cf1c9 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the channel description field.
CVE-2023-30096 1 Totaljs 1 Messenger 2023-12-10 N/A 5.4 MEDIUM
A stored cross-site scripting (XSS) vulnerability in TotalJS messenger commit b6cf1c9 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the user information field.
CVE-2023-30097 1 Totaljs 1 Messenger 2023-12-10 N/A 5.4 MEDIUM
A stored cross-site scripting (XSS) vulnerability in TotalJS messenger commit b6cf1c9 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the private task field.