VYPR

Chat Room

by Chat Room Project

CVEs (1)

  • CVE-2015-8601Dec 17, 2015
    risk 0.00cvss epss 0.00

    The Chat Room module 7.x-2.x before 7.x-2.2 for Drupal does not properly check permissions when setting up a websocket for chat messages, which allows remote attackers to bypass intended access restrictions and read messages from arbitrary Chat Rooms via unspecified vectors.