Vulnerabilities (CVE)

Filtered by vendor Chinasea Subscribe
Filtered by product Qb Smart Service Robot
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-44163 1 Chinasea 1 Qb Smart Service Robot 2021-12-27 4.3 MEDIUM 6.1 MEDIUM
Chain Sea ai chatbot backend has improper filtering of special characters in URL parameters, which allows a remote attacker to perform JavaScript injection for XSS (reflected Cross-site scripting) attack without authentication.