CVE-2022-35251
Last modified
CVE-2022-35251 is a medium-severity vulnerability rated 5.4/10 on the CVSS scale. A cross-site scripting vulnerability exists in Rocket.chat <v5 due to style injection in the complete chat window, an adversary is able to manipulate not only the style of it, but will also be able to block functionality as well as hijacking the content of targeted users. Hence the payloads are stored in messages, it is a persistent attack vector, which will trigger as soon as the message gets viewed.. EPSS estimates a 0.53% chance of exploitation in the next 30 days.
Description
A cross-site scripting vulnerability exists in Rocket.chat <v5 due to style injection in the complete chat window, an adversary is able to manipulate not only the style of it, but will also be able to block functionality as well as hijacking the content of targeted users. Hence the payloads are stored in messages, it is a persistent attack vector, which will trigger as soon as the message gets viewed.
Metrics
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Rocket.Chat | Rocket.Chat | < 5.0 |
References
- https://hackerone.com/reports/1401268Exploit, Issue Tracking, Third Party Advisory
- https://hackerone.com/reports/1401268Exploit, Issue Tracking, Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2022-35251?
How severe is CVE-2022-35251?
How do I fix CVE-2022-35251?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2022
- CVE-2022-35246A NoSQL-Injection information disclosure vulnerability vulne…4.3
- CVE-2022-35247A information disclosure vulnerability exists in Rocket.chat…4.3
- CVE-2022-35248A improper authentication vulnerability exists in Rocket.Cha…8.8
- CVE-2022-35249A information disclosure vulnerability exists in Rocket.Chat…4.3
- CVE-2022-3525Deserialization of Untrusted Data in GitHub repository libre…8.8
- CVE-2022-35250A privilege escalation vulnerability exists in Rocket.chat <…4.3
- CVE-2022-35252When curl is used to retrieve and parse cookies from a HTTP(…3.7
- CVE-2022-35253Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2022-35254An unauthenticated attacker can cause a denial-of-service to…7.5
- CVE-2022-35255A weak randomness in WebCrypto keygen vulnerability exists i…9.1
- CVE-2022-35256The llhttp parser in the http module in Node v18.7.0 does no…6.5
- CVE-2022-35257A local privilege escalation vulnerability in UI Desktop for…7.8
Are you affected by CVE-2022-35251?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
