Super 8 Live Chat online customer service platform fails to properly filter user input, allowing unauthenticated remote attackers to insert JavaScript code into the chat box. When the message recipient views the message, they become susceptible to Cross-site Scripting (XSS) attacks.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: twcert

Published: 2024-04-29T05:46:52.134Z

Updated: 2024-08-01T20:33:53.106Z

Reserved: 2024-04-29T03:23:14.861Z

Link: CVE-2024-4302

cve-icon Vulnrichment

Updated: 2024-08-01T20:33:53.106Z

cve-icon NVD

Status : Deferred

Published: 2024-04-29T06:15:17.803

Modified: 2026-04-15T00:35:42.020

Link: CVE-2024-4302

cve-icon Redhat

No data.