PatchSiren

Nopaperforms CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM Nopaperforms CVE published 2026-08-24

CVE-2022-30983

A cross-site scripting (XSS) vulnerability exists in Support chatbot in Nopaperforms Niaa-Chatbot through 2022-05-17. The vulnerability allows remote attackers to inject arbitrary web script or HTML via the Enter email parameter. Defenders should assess exposure, particularly those managing web applications and user input validation. This vulnerability has a medium severity and requires attention from web [truncated]