Sojan Jose
6 exploits
Active since Feb 2022
chatwoot < 2.4.0 - Session Fixation via Password Change
CVSS 6.8
chatwoot < 2.6.0 - Stored Cross-Site Scripting via SVG Avatar Upload
CVSS 5.4
chatwoot < 2.5.0 - Server-Side Request Forgery via SVG Avatar Upload
CVSS 8.8
GitHub chatwoot/chatwoot < 2.2 - Privilege Escalation
CVSS 6.5
chatwoot < 2.8.0 - Improper Authorization
CVSS 7.1
chatwoot < 2.10.0 - Excessive Authentication Attempts and Account Enumeration
CVSS 9.8