ChatLuck contains a cross-site scripting vulnerability in Guest User Sign-up. If exploited, an arbitrary script may be executed on the web browser of the user who is accessing the product.
Metrics
Affected Vendors & Products
References
History
Thu, 16 Oct 2025 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Thu, 16 Oct 2025 09:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | ChatLuck contains a cross-site scripting vulnerability in Guest User Sign-up. If exploited, an arbitrary script may be executed on the web browser of the user who is accessing the product. | |
Weaknesses | CWE-79 | |
References |
| |
Metrics |
cvssV3_0
|

Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2025-10-16T15:35:37.661Z
Reserved: 2025-09-02T01:35:11.185Z
Link: CVE-2025-58115

Updated: 2025-10-16T13:18:19.334Z

Status : Awaiting Analysis
Published: 2025-10-16T09:15:35.200
Modified: 2025-10-16T15:28:59.610
Link: CVE-2025-58115

No data.

No data.