Movim prior to version 0.22 is affected by a Cross-Site WebSocket Hijacking vulnerability. This was the result of a missing header validation.
{ "binaries": [ { "binary_name": "movim", "binary_version": "0.14.1-6" } ] }