Sploitus

CVE-2020-10935

No indexed exploits for CVE-2020-10935 yet

Zulip Server before 2.1.3 allows XSS via a Markdown link, with resultant account takeover.

Affected products
Zulip Server
Zulip Zulip Server
< 2.1.3
Fix
Available
CVSS 3.1
5.4 MEDIUM
EPSS
0.7% (52th percentile)
Weakness
CWE-79
NVD status
Modified
Published
2020-04-20
CVE-2020-10935 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2020-10935 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2020-10935 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.