CVE-2020-24582

Publication date

2020-09-10 16:11:44

Family

mitre

State

PUBLISHED

Description

Zulip Desktop before 5.4.3 allows XSS because string escaping is mishandled during composition of the HTML for the user interface.