CVE-2018-9999
EUVD-2018-2159118.04.2018, 08:29
In Zulip Server versions before 1.7.2, there was an XSS issue with user uploads and the (default) LOCAL_UPLOADS_DIR storage backend.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| zulip | zulip_server | 𝑥 < 1.7.2 |
𝑥
= Vulnerable software versions