Vulnerabilities (CVE)

Filtered by vendor Wrongthink Project Subscribe
Filtered by product Wrongthink
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-29467 1 Wrongthink Project 1 Wrongthink 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
Wrongthink is an encrypted peer-to-peer chat program. A user could check their fingerprint into the service and enter a script to run arbitrary JavaScript on the site. No workarounds exist, but a patch exists in version 2.4.1.