Shivam Mishra
4 exploits
Active since Apr 2023
Chatwoot: Pre-Account Takeover via OAuth on Unconfirmed Accounts
CVSS 6.8
Chatwoot 2.16.1-3.15.9 - Authenticated SQL Injection via Query Operator Parameter
CVSS 9.1
GitHub repository chatwoot/chatwoot <2.14.0 - XSS
CVSS 6.1
chatwoot 3.0.0-3.5.1 - Stored Cross-Site Scripting via Dashboard App Settings
CVSS 4.8