CVE-2023-30319: Chatengine Project Chatengine

Critical severity, CVSS 9.6. EPSS: 0.9% chance of exploitation in the next 30 days.

Cross Site Scripting (XSS) vulnerability in username field in /src/chatbotapp/LoginServlet.java in wliang6 ChatEngine commit fded8e710ad59f816867ad47d7fc4862f6502f3e, allows attackers to execute arbitrary code.

Affected products

Published 2023-07-06. Last modified 2026-06-17.