Filtered by CWE-1385
Total 22 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2023-2848 1 Movim 1 Movim 2024-11-21 8 High
Movim prior to version 0.22 is affected by a Cross-Site WebSocket Hijacking vulnerability. This was the result of a missing header validation.
CVE-2024-23168 1 Xiexe 1 Xsoverlay 2024-08-19 9.8 Critical
Vulnerability in Xiexe XSOverlay before build 647 allows non-local websites to send the malicious commands to the WebSocket API, resulting in the arbitrary code execution.