Lucene search

K

Slack-Chat Security Vulnerabilities

cve
cve

CVE-2019-14367

Slack-Chat through 1.5.5 leaks a Slack Access Token in source code. An attacker can obtain a lot of information about the victim's Slack (channels, members, etc.).

7.5CVSS

7.3AI Score

0.001EPSS

2019-11-12 09:15 PM
44
cve
cve

CVE-2023-3667

The Bit Assist WordPress plugin before 1.1.9 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)

4.8CVSS

4.8AI Score

0.001EPSS

2023-08-21 05:15 PM
27