Cross Site Scripting vulnerability in tiagorlampert CHAOS v.5.0.1 allows a remote attacker to escalate privileges via the sendCommandHandler function in the handler.go component.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Wed, 16 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.41225}

epss

{'score': 0.42467}


Tue, 17 Jun 2025 21:15:00 +0000

Type Values Removed Values Added
First Time appeared Tiagorlampert
Tiagorlampert chaos
CPEs cpe:2.3:a:tiagorlampert:chaos:5.0.1:*:*:*:*:*:*:*
Vendors & Products Tiagorlampert
Tiagorlampert chaos

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-02T01:59:50.666Z

Reserved: 2024-04-05T00:00:00

Link: CVE-2024-31839

cve-icon Vulnrichment

Updated: 2024-08-02T01:59:50.666Z

cve-icon NVD

Status : Analyzed

Published: 2024-04-12T14:15:07.947

Modified: 2025-06-17T20:59:05.003

Link: CVE-2024-31839

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.