VYPR

ChatLuck

by chatluck

CVEs (3)

  • CVE-2025-58115MedOct 16, 2025
    risk 0.40cvss 6.1epss 0.00

    ChatLuck contains a cross-site scripting vulnerability in Guest User Sign-up. If exploited, an arbitrary script may be executed on the web browser of the user who is accessing the product.

  • CVE-2025-53858MedOct 16, 2025
    risk 0.35cvss 5.4epss 0.00

    ChatLuck contains a cross-site scripting vulnerability in Chat Rooms. If exploited, an arbitrary script may be executed on the web browser of the user who is accessing the product.

  • CVE-2025-54461MedOct 16, 2025
    risk 0.34cvss 5.3epss 0.00

    ChatLuck contains an insufficient granularity of access control vulnerability in Invitation of Guest Users. If exploited, an uninvited guest user may register itself as a guest user.