All 2 CVE vulnerabilities found in Hive Support | AI-Powered Help Desk, Live Chat and Chatbot, with AI-generated Chinese analysis, references, and POCs.
Vendor: hivesupport
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-5018 | Hive Support <= 1.2.5 - Authenticated (Subscriber+) Missing Authorization via hs_update_ai_chat_settings and hive_lite_support_get_all_binbox CWE-862 | 7.1 | High | 2025-06-06 |
| CVE-2025-5019 | Hive Support <= 1.2.5 - Cross-Site Request Forgery via hs_update_ai_chat_settings Function CWE-352 | 5.4 | Medium | 2025-06-06 |
All 2 known CVE vulnerabilities affecting Hive Support | AI-Powered Help Desk, Live Chat and Chatbot with full Chinese analysis, references, and POCs where available.