Stored XSS in any message (leads to priv esc for all users and file leak + rce via electron app)

Disclosed: 2021-03-25 06:59:29 By psych0tr1a To rocket_chat
High
Vulnerability Details
No vulnerability description provided or it is restricted.
Actions
View on HackerOne
Report Stats
  • Report ID: 1014459
  • State: Closed
  • Substate: resolved
  • Upvotes: 24
Share this report