CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 6.1. It affects Java. Its EPSS score suggests a 21.2% probability of exploitation in the next 30 days.
CVE
CVE-2019-19908
Severity
MEDIUM
CVSS
6.1
EPSS
21.23%
Java
Original NVD Description
phpMyChat-Plus 1.98 is vulnerable to reflected XSS via JavaScript injection into the password reset URL. In the URL, the pmc_username parameter to pass_reset.php is vulnerable.
Related CVEs
Other vulnerabilities affecting the same vendor(s)