CVE-2024-45621

Publication date

2024-09-02 00:00:00

Family

mitre

State

PUBLISHED

Description

The Electron desktop application of Rocket.Chat through 6.3.4 allows stored XSS via links in an uploaded file, related to failure to use a separate browser upon encountering third-party external actions from PDF documents.