Cross-Site Scripting Vulnerability in Telegram Web K Alpha by Telegram
CVE-2021-37596
6.1MEDIUM
What is CVE-2021-37596?
The Telegram Web K Alpha version 0.6.1 has a vulnerability that allows for Cross-Site Scripting (XSS) through manipulation of document names. This flaw enables attackers to inject malicious scripts that can execute within the context of the user's session, posing a significant risk to user data and web application integrity.