53kf develops web-based instant messaging and communication products, with a focused vulnerability profile centered on its 53kf platform and Web IM 2009 offering. The observed exposure concentrates on cross-site scripting weaknesses inherent to web-facing communication interfaces where user-controlled input flows into rendered content. Current exploitation activity, severity distribution, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by 53kf over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-28119MEDIUM Cross site scripting vulnerability in 53KF < 2.0.0.2 that allows for arbitrary code to be executed via crafted HTML statement inserted into chat window. | Oct 4, 2021 | 6.1 | 21 | NO | NO |
CVE-2009-0247MEDIUM The server for 53KF Web IM 2009 Home, Professional, and Enterprise editions relies on client-side protection mechanisms against cross-site scripting (XSS), which allows remote atta | Jan 22, 2009 | 4.3 | 14 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by 53kf.
Media articles that mention a CVE ID that affects a product developed by 53kf — matched by CVE ID, not by vendor name.