NONE · 0

CVE-2026-4263

Vulnerability of incorrect authorization in HiJiffy Chatbot allows an attacker to download private messages from other users via the parameter  'visitor' in '/api/v1/webchat/message'.

Vulnerability Description

Vulnerability of incorrect authorization in HiJiffy Chatbot allows an attacker to download private messages from other users via the parameter  'visitor' in '/api/v1/webchat/message'.

Related Weaknesses (CWE)

References

FAQ

What is CVE-2026-4263?

CVE-2026-4263 is a documented vulnerability. Vulnerability of incorrect authorization in HiJiffy Chatbot allows an attacker to download private messages from other users via the parameter  'visitor' in '/api/v1/webchat/message'.

How severe is CVE-2026-4263?

CVSS scoring is not yet available for CVE-2026-4263. Check NVD for updates.

Is there a patch for CVE-2026-4263?

Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.