Product
ai3 qbibot
3 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2024-7204
CVE-2024-3778
CVE-2024-3777
< 8.0.9.02
Ai3 QbiBot does not properly filter user input, allowing unauthenticated remote attackers to insert JavaScript code into the chat
all versions
The file upload functionality of Ai3 QbiBot does not properly restrict types of uploaded files, allowing remote attackers with adm
all versions
The password reset feature of Ai3 QbiBot lacks proper access control, allowing unauthenticated remote attackers to reset any user'