CVE-2020-24582
10.09.2020, 17:15
Zulip Desktop before 5.4.3 allows XSS because string escaping is mishandled during composition of the HTML for the user interface.
Vendor | Product | Version |
---|---|---|
zulipchat | zulip_desktop | 𝑥 < 5.4.3 |
𝑥
= Vulnerable software versions