CVE-2023-22959: Webchess Project Webchess
High severity, CVSS 8.8. EPSS: 13.7% chance of exploitation in the next 30 days.
WebChess through 0.9.0 and 1.0.0.rc2 allows SQL injection: mainmenu.php, chess.php, and opponentspassword.php (txtFirstName, txtLastName).
Affected products
- Webchess Project Webchess: up to and including 0.9.0; version 1.0.0 only
Published 2023-01-11. Last modified 2026-06-17.