Oct8ne develops a web-based chatbot product where the observed vulnerabilities center on cross-site scripting weaknesses arising from improper input neutralization in dynamically generated web content. Current exploitation activity, severity distribution, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Oct8ne over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-11952MEDIUM Stored Cross-site Scripting (XSS) in Oct8ne Chatbot v2.3. This vulnerability allows an attacker to execute JavaScript code in the victim's browser by injecting a malicious payload | Oct 22, 2025 | 6.1 | 21 | NO | NO |
CVE-2025-10869MEDIUM Stored Cross-site Scripting (XSS) in Oct8ne Chatbot v2.3. This vulnerability allows an attacker to execute JavaScript code in the victim's browser by injecting a malicious payload | Oct 15, 2025 | 6.1 | 21 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Oct8ne.
Media articles that mention a CVE ID that affects a product developed by Oct8ne — matched by CVE ID, not by vendor name.