CVE-2025-30345 | OpenSlides up to 4.2.4 HTML Element chat_group.create HTML injection (EUVD-2025-7266)
A vulnerability has been found in OpenSlides up to 4.2.4 and classified as problematic. This vulnerability affects the function chat_group.create of the component HTML Element Handler. The manipulation leads to HTML injection.
This vulnerability was named CVE-2025-30345. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.