Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-22330 | Self Cross-Site Scripting (XSS) vulnerability in ChatPlayground.ai through 2025-05-24, allows attackers to execute arbitrary code and gain sensitive information via a crafted SVG file contents sent through the chat component. |
| Link | Providers |
|---|---|
| https://github.com/Secsys-FDU/CVE-2025-51858 |
|
Tue, 22 Jul 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-79 | |
| Metrics |
cvssV3_1
|
Tue, 22 Jul 2025 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Self Cross-Site Scripting (XSS) vulnerability in ChatPlayground.ai through 2025-05-24, allows attackers to execute arbitrary code and gain sensitive information via a crafted SVG file contents sent through the chat component. | |
| References |
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-07-22T16:10:19.592Z
Reserved: 2025-06-16T00:00:00.000Z
Link: CVE-2025-51858
Updated: 2025-07-22T16:10:14.154Z
Status : Deferred
Published: 2025-07-22T15:15:36.490
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-51858
No data.
OpenCVE Enrichment
No data.
EUVD