CVE Published: 21/01/2021 |
CVE Updated: 04/08/2024 |
CVE Year: 2020 Source: hackerone |
Vendor: n/a |
Product: Rocket.Chat server Status : PUBLISHED
CVE-2020-8288 Description
The `specializedRendering` function in Rocket.Chat server before 3.9.2 allows a cross-site scripting (XSS) vulnerability by way of the `value` parameter.