First published: Fri Aug 21 2020(Updated: )
Zulip Server before 2.1.5 allows reverse tabnapping via a topic header link.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Zulip Server | <2.1.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-14194 is a vulnerability in Zulip Server before 2.1.5 that allows reverse tabnapping via a topic header link.
The severity of CVE-2020-14194 is medium, with a severity value of 5.4.
CVE-2020-14194 affects Zulip Server before version 2.1.5.
To fix CVE-2020-14194, update Zulip Server to version 2.1.5 or later.
More information about CVE-2020-14194 can be found at the following reference: https://blog.zulip.com/2020/06/17/zulip-server-2-1-5-security-release/