Filtered by vendor Totaljs Subscriptions
Filtered by product Messenger Subscriptions
Total 3 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2023-30097 1 Totaljs 1 Messenger 2024-08-02 5.4 Medium
A stored cross-site scripting (XSS) vulnerability in TotalJS messenger commit b6cf1c9 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the private task field.
CVE-2023-30095 1 Totaljs 1 Messenger 2024-08-02 5.4 Medium
A stored cross-site scripting (XSS) vulnerability in TotalJS messenger commit b6cf1c9 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the channel description field.
CVE-2023-30096 1 Totaljs 1 Messenger 2024-08-02 5.4 Medium
A stored cross-site scripting (XSS) vulnerability in TotalJS messenger commit b6cf1c9 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the user information field.