CVE-2025-63639 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

The chat feature in the application Sourcecodester FAQ Bot with AI Assistant v1.0 is vulnerable to Cross-Site Scripting (XSS) due to improper handling of user-s…
Medium CVSS: 6.1

CVE-2025-63639

The chat feature in the application Sourcecodester FAQ Bot with AI Assistant v1.0 is vulnerable to Cross-Site Scripting (XSS) due to improper handling of user-supplied input. An attacker can inject malicious HTML or JavaScript into chat messages, which executes in the browser of any user viewing the conversation.
Vendor
Remyandrade
Product
Faq Bot With Ai Assistant
CWE
CWE-79
Yayın Tarihi
2025-11-07 20:15:38
Güncelleme
2025-11-17 18:55:26
Source Identifier
cve@mitre.org
KEV Date Added
-

Kategoriler

Referanslar