EIP-2026-110543
PRE-CVEPendulab ChatBlazer 8.5 - 'Username' Cross-Site Scripting
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-110543. PoCs published by sonyy.
AI-analyzed exploit summary This exploit demonstrates a cross-site scripting (XSS) vulnerability in ChatBlazer 8.5 by injecting malicious JavaScript code via the 'username' parameter. The payload uses obfuscated 'alert' functions to bypass basic input filters and execute arbitrary script code in the context of the affected site.
Description
Pendulab ChatBlazer 8.5 - 'Username' Cross-Site Scripting
Exploits (1)
This exploit demonstrates a cross-site scripting (XSS) vulnerability in ChatBlazer 8.5 by injecting malicious JavaScript code via the 'username' parameter. The payload uses obfuscated 'alert' functions to bypass basic input filters and execute arbitrary script code in the context of the affected site.