CVE-2026-97326: Songxinjianqwe Chat
High severity, CVSS 7.3. EPSS: 0.3% chance of exploitation in the next 30 days.
A weakness has been identified in songxinjianqwe Chat up to ac63d25297079eed5e4ba7e88d3b7a032637150d. Affected by this issue is some unknown functionality of the file chat-server/src/main/java/cn/sinjinsong/chat/server/ChatServer.java of the component chat-server. This manipulation causes server-side request forgery. The attack may be initiated remotely. The exploit has been made available to the public and could be used for attacks. This product uses a rolling release model to deliver continuous updates. As a result, specific version information for affected or updated releases is not available. The vendor was contacted early about this disclosure but did not respond in any way.
Affected products
- Songxinjianqwe Chat
Published 2026-09-24. Last modified 2026-09-25.