Telegram Web 15.3.1 allows XSS via a certain payload derived from a Target Corporation website. NOTE: some third parties have been unable to discern any relationship between the Pastebin information and a possible XSS finding.
| Software | From | Fixed in |
|---|---|---|
| telegram / telegram | 15.3.1 | 15.3.1.x |