All 8 CVE vulnerabilities found in wire-webapp, with AI-generated Chinese analysis, references, and POCs.
Vendor: wireapp
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-48066 | wire-webapp has no database deletion on client logout CWE-226 | 6.0 | Medium | 2025-05-22 |
| CVE-2025-48061 | wire-webapp Has Insufficient Session Invalidation after User Logout CWE-613 | 5.6 | Medium | 2025-05-22 |
| CVE-2022-39380 | wire-webapp contains Improper Handling of Exceptional Conditions leading to a DoS via Markdown Rendering CWE-755 | 5.3 | Medium | 2023-01-27 |
| CVE-2022-29168 | Cross Site Scripting in Wire Messages CWE-79 | 9.6 | Critical | 2022-06-25 |
| CVE-2022-24799 | Cross Site Scripting in Wire Webapp CWE-79 | 9.6 | Critical | 2022-04-20 |
| CVE-2022-23605 | Expired Ephemeral Messages not reliably removed in wire-webapp CWE-212 | 4.4 | Medium | 2022-02-04 |
| CVE-2021-32683 | XSS through createObjectURL CWE-79 | 8.8 | High | 2021-06-15 |
| CVE-2021-21400 | Entering code in App Lock modal sends input to conversation CWE-200 | 7.1 | High | 2021-04-02 |
All 8 known CVE vulnerabilities affecting wire-webapp with full Chinese analysis, references, and POCs where available.