VYPR
Vendor

Chatboxai

Products
1
CVEs
3
Across products
3
Status
Private

Products

1

Recent CVEs

3
  • CVE-2026-6130HigApr 12, 2026
    risk 0.41cvss 7.3epss 0.01

    A flaw has been found in chatboxai chatbox up to 1.20.0. This impacts the function StdioClientTransport of the file src/main/mcp/ipc-stdio-transport.ts of the component Model Context Protocol Server Management System. Executing a manipulation of the argument args/env can lead to…

  • CVE-2025-9651MedAug 29, 2025
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was found in shafhasan chatbox up to 156a39cde62f78532c3265a70eda12c70907e56f. This impacts an unknown function of the file /chat.php. The manipulation of the argument user_id results in sql injection. The attack may be performed from a remote location. The…

  • CVE-2020-35852MedFeb 23, 2021
    risk 0.40cvss 6.1epss 0.01

    Chatbox is affected by cross-site scripting (XSS). An attacker has to upload any XSS payload with SVG, XML file in Chatbox. There is no restriction on file upload in Chatbox which leads to stored XSS.