CVE-2020-8288
The `specializedRendering` function in Rocket.Chat server before 3.9.2 allows a cross-site scripting (XSS) vulnerability
The specializedRendering function in Rocket.Chat server before 3.9.2 allows a cross-site scripting (XSS) vulnerability by way of the value parameter.
MEDIUM · CVSS 5.4
EPSS 0.00466
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0