Medium severity6.1NVD Advisory· Published Apr 20, 2020· Updated Jun 17, 2026
CVE-2020-9445
CVE-2020-9445
Description
Zulip Server before 2.1.3 allows XSS via the modal_link feature in the Markdown functionality.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:zulip:zulip_server:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:zulip:zulip_server:*:*:*:*:*:*:*:*range: <2.1.3
- (no CPE)range: <2.1.3
- Zulip/Zulip Serverdescription
Patches
Vulnerability mechanics
References
1- blog.zulip.org/2020/04/01/zulip-server-2-1-3-security-release/nvdVendor Advisory
News mentions
0No linked articles in our index yet.