PT-2026-30229 · Unknown · Prompts.Chat
Published
2026-04-03
·
Updated
2026-04-03
·
CVE-2026-22665
CVSS v3.1
8.1
High
| AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
prompts.chat versions prior to commit 1464475
Description
prompts.chat is susceptible to an identity confusion issue stemming from inconsistent case sensitivity in username handling during write and read operations. This allows attackers to create usernames that differ only in case, bypassing uniqueness checks. Successful exploitation enables attackers to impersonate legitimate users, replace profile content associated with canonical URLs, and inject malicious metadata and content into the platform.
Recommendations
Update prompts.chat to a version after commit 1464475.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Prompts.Chat