CVE-2023-30321: Chatengine Project Chatengine
Critical severity, CVSS 9.0. EPSS: 0.9% chance of exploitation in the next 30 days.
Cross Site Scripting (XSS) vulnerability in textMessage field in /src/chatbotapp/LoginServlet.java in wliang6 ChatEngine commit fded8e710ad59f816867ad47d7fc4862f6502f3e, allows attackers to execute arbitrary code.
Affected products
- Chatengine Project Chatengine: version 1.0 only
Published 2023-07-06. Last modified 2026-06-17.