Search Results (64 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2018-9987 1 Zulip 1 Zulip Server 2024-11-21 N/A
In Zulip Server versions 1.5.x, 1.6.x, and 1.7.x before 1.7.2, there was an XSS issue with muting notifications.
CVE-2018-9986 1 Zulip 1 Zulip Server 2024-11-21 N/A
In Zulip Server versions before 1.7.2, there were XSS issues with the frontend markdown processor.
CVE-2016-4427 1 Zulip 1 Zulip 2024-11-21 7.5 High
In zulip before 1.3.12, deactivated users could access messages if SSO was enabled.
CVE-2016-4426 1 Zulip 1 Zulip 2024-11-21 4.3 Medium
In zulip before 1.3.12, bot API keys were accessible to other users in the same realm.