Vulnerabilities > Livehelperchat > Live Helper Chat > High

DATE CVE VULNERABILITY TITLE RISK
2022-04-07 CVE-2022-0935 Improper Encoding or Escaping of Output vulnerability in Livehelperchat Live Helper Chat
Host Header injection in password Reset in GitHub repository livehelperchat/livehelperchat prior to 3.97.
network
low complexity
livehelperchat CWE-116
8.8
2022-04-05 CVE-2022-1235 Unspecified vulnerability in Livehelperchat Live Helper Chat
Weak secrethash can be brute-forced in GitHub repository livehelperchat/livehelperchat prior to 3.96.
network
low complexity
livehelperchat
8.2
2022-04-05 CVE-2022-1213 Unspecified vulnerability in Livehelperchat Live Helper Chat
SSRF filter bypass port 80, 433 in GitHub repository livehelperchat/livehelperchat prior to 3.67v.
network
low complexity
livehelperchat
8.1
2022-03-31 CVE-2022-1176 Unspecified vulnerability in Livehelperchat Live Helper Chat
Loose comparison causes IDOR on multiple endpoints in GitHub repository livehelperchat/livehelperchat prior to 3.96.
network
low complexity
livehelperchat
7.5
2022-03-31 CVE-2022-1191 Unspecified vulnerability in Livehelperchat Live Helper Chat
SSRF on index.php/cobrowse/proxycss/ in GitHub repository livehelperchat/livehelperchat prior to 3.96.
network
low complexity
livehelperchat
8.1
2021-12-18 CVE-2021-4131 Unspecified vulnerability in Livehelperchat Live Helper Chat
livehelperchat is vulnerable to Cross-Site Request Forgery (CSRF)
network
low complexity
livehelperchat
8.8