← Back to CVE List

CVE-2024-48059

Published: 2024-11-04T23:15Z
Last Modified: 2024-11-05T22:35Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
gaizhenbiao/chuanhuchatgpt project, version <=20240802 is vulnerable to stored Cross-Site Scripting (XSS) in WebSocket session transmission. An attacker can inject malicious content into a WebSocket message. When a victim accesses this session, the malicious JavaScript is executed in the victim's browser. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt