CVE-2023-48769
CVSS 3.1 Score 8.8 of 10 (high)
Details
Summary
CVE-2023-48769 is a Cross-Site Request Forgery (CSRF) vulnerability that affects the Blue Coral Chat Bubble application, specifically versions 2.3 and below. An attacker can exploit this weakness to trick a user into making unintended actions on the attacker's behalf, such as modifying account settings or initiating unauthorized transactions. The CSRF vulnerability exists in the Floating Chat feature with Contact Chat Icons, Messages, Telegram, Email, SMS, and Call me back functions. Users are strongly advised to update to the latest version of Blue Coral Chat Bubble to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.