VYPR
Unrated severityOSV Advisory· Published Sep 23, 2022· Updated May 22, 2025

CVE-2022-32229

CVE-2022-32229

Description

A information disclosure vulnerability exists in Rockert.Chat <v5 due to /api/v1/chat.getThreadsList lack of sanitization of user inputs and can therefore leak private thread messages to unauthorized users via Mongo DB injection.

Affected products

1

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.