CVE

CVE-2020-24582

CVE-2020-24582

Zulip Desktop before 5.4.3 allows XSS because string escaping is mishandled during composition of the HTML for the user interface.

Source: CVE-2020-24582

Exit mobile version