{"id":"CVE-2022-1530","aliases":["BIT-livehelperchat-2022-1530","GHSA-9hgc-wpc5-v8p9"],"url":"https://o3.security/vulnerability/CVE-2022-1530","summary":"Cross-site Scripting (XSS) in livehelperchat/livehelperchat","details":"Cross-site Scripting (XSS) in GitHub repository livehelperchat/livehelperchat prior to 3.99v. The attacker can execute malicious JavaScript on the application.","published":"2022-04-29T08:50:10Z","modified":"2026-08-08T03:47:10.701021633Z","cvss":{"score":3.8,"severity":"LOW","vector":"CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:L"},"epss":null,"cisaKev":null,"exploitsKnown":1,"affectedPackages":[{"ecosystem":"Packagist","name":"remdex/livehelperchat","fixedVersion":"3.99"}],"fix":{"url":"https://github.com/livehelperchat/livehelperchat/commit/edef7a8387be718d0de2dfd1e722789afb0461bc","label":"livehelperchat/livehelperchat@edef7a8"},"references":[{"type":"WEB","url":"https://huntr.dev/bounties/8fd8de01-7e83-4324-9cc8-a97acb9b70d6"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/1xxx/CVE-2022-1530.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-1530"},{"type":"FIX","url":"https://github.com/livehelperchat/livehelperchat/commit/edef7a8387be718d0de2dfd1e722789afb0461bc"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-08-08T03:47:10.701021633Z"}}