Vulnerabilities > Chatwoot

DATE CVE VULNERABILITY TITLE RISK
2023-04-17 CVE-2023-2109 Cross-site Scripting vulnerability in Chatwoot
Cross-site Scripting (XSS) - DOM in GitHub repository chatwoot/chatwoot prior to 2.14.0.
network
low complexity
chatwoot CWE-79
6.1
2022-10-28 CVE-2022-3741 Improper Restriction of Excessive Authentication Attempts vulnerability in Chatwoot
Impact varies for each individual vulnerability in the application.
network
low complexity
chatwoot CWE-307
critical
9.8
2022-04-21 CVE-2022-1022 Cross-site Scripting vulnerability in Chatwoot
Cross-site Scripting (XSS) - Stored in GitHub repository chatwoot/chatwoot prior to 2.5.0.
network
chatwoot CWE-79
3.5
2022-02-09 CVE-2021-3813 Authorization Bypass Through User-Controlled Key vulnerability in Chatwoot
Improper Privilege Management in GitHub repository chatwoot/chatwoot prior to v2.2.
network
low complexity
chatwoot CWE-639
6.5
2022-02-09 CVE-2022-0526 Cross-site Scripting vulnerability in Chatwoot
Cross-site Scripting (XSS) - Stored in GitHub repository chatwoot/chatwoot prior to 2.2.0.
network
chatwoot CWE-79
4.3
2022-02-09 CVE-2022-0527 Cross-site Scripting vulnerability in Chatwoot
Cross-site Scripting (XSS) - Stored in GitHub repository chatwoot/chatwoot prior to 2.2.0.
network
chatwoot CWE-79
4.3
2021-07-16 CVE-2021-3649 Unspecified vulnerability in Chatwoot
chatwoot is vulnerable to Inefficient Regular Expression Complexity
network
low complexity
chatwoot
5.0