livehelperchat is vulnerable to Generation of Error Message Containing Sensitive Information. There is an observable discrepancy between errors generated for users that exist and those that do not.
References:GSA_kwCzR0hTQS00eHd3LTZoN3YtMjlqZ80gyw
User enumeration in livehelperchat
Affected Packages | Affected Versions | Fixed Versions | |
---|---|---|---|
packagist:remdex/livehelperchat | < 3.91 | 3.91 | |
Affected Version RangesAll affected versionsAll unaffected versions |