VendorsChat Room Projectchat_roomall versions
Vulnerabilities

Chat Room Project Chat Room

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2015-8601
The Chat Room module 7.x-2.x before 7.x-2.2 for Drupal does not properly check permissions when setting up a websocket for chat messages, which allows remote attackers to bypass intended access restrictions and read messages from arbitrary Chat Rooms via unspecified vectors.
Published 2015-12-17 · Modified
5.0EPSS 0.012