Vulnerabilities > Simple Chatbot Application Project

DATE CVE VULNERABILITY TITLE RISK
2022-01-27 CVE-2021-46427 SQL Injection vulnerability in Simple Chatbot Application Project Simple Chatbot Application 1.0
An SQL Injection vulnerability exists in Sourcecodester Simple Chatbot Application 1.0 via the message parameter in Master.php.
network
low complexity
simple-chatbot-application-project CWE-89
critical
9.8
2022-01-27 CVE-2021-46428 Unrestricted Upload of File with Dangerous Type vulnerability in Simple Chatbot Application Project Simple Chatbot Application 1.0
A Remote Code Execution (RCE) vulnerability exists in Sourcecodester Simple Chatbot Application 1.0 ( and previous versions via the bot_avatar parameter in SystemSettings.php.
network
low complexity
simple-chatbot-application-project CWE-434
critical
9.8