CVE-2019-20365: Ignite Realtime Openfire
Medium severity, CVSS 6.1. EPSS: 1.2% chance of exploitation in the next 30 days.
An XSS issue was discovered in Ignite Realtime Openfire 4.4.4 via search to the Users/Group search page.
Affected products
- Ignite Realtime Openfire: version 4.4.4 only
Published 2020-01-08. Last modified 2026-06-17.