First published: Thu Jun 27 2024(Updated: )
A Cross-site Scripting (XSS) vulnerability exists in the chat functionality of parisneo/lollms-webui in the latest version. This vulnerability allows an attacker to inject malicious scripts via chat messages, which are then executed in the context of the user's browser.
Credit: security@huntr.dev
Affected Software | Affected Version | How to fix |
---|---|---|
Lollms Lollms Webui |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.