Home
MEDIUM: 6.4 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:NDefault status
unaffected
Any version before b087490042cb131963b524d0f86511a63a7ff085
affected
Description
In Agora Foundation Agora fall23-Alpha1 before b087490, there is XSS via topicName in client/agora/public/js/editorManager.js.
Problem types
CWE-79 Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting')
Product status
Any version before b087490042cb131963b524d0f86511a63a7ff085
References
github.com/agorafoundation/agora/pull/556
github.com/...ommit/b087490042cb131963b524d0f86511a63a7ff085
github.com/...ulnerability-research/tree/main/CVE-2025-55133