CVE-2020-10935
Zulip Server before 2.1.3 allows XSS via a Markdown link, with resultant account takeover.
Zulip Server before 2.1.3 allows XSS via a Markdown link, with resultant account takeover.
MEDIUM · CVSS 5.4
EPSS 0.00302
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0