← Back to CVE List

CVE-2023-28358

Published: 2023-05-11T22:15Z
Last Modified: 2025-01-27T17:15Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
A vulnerability has been discovered in Rocket.Chat where a markdown parsing issue in the "Search Messages" feature allows the insertion of malicious tags. This can be exploited on servers with content security policy disabled possible leading to some issues attacks like account takeover. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt