Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
chat vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2023-23727
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Formilla Live Chat by Formilla plugin <= 1.3 versions.
Formilla Live Chat
4.3
CVSSv2
CVE-2019-9913
The wp-live-chat-support plugin prior to 8.0.18 for WordPress has wp-admin/admin.php?page=wplivechat-menu-gdpr-page term XSS.
3cx Live Chat
4.3
CVSSv2
CVE-2019-13975
eGain Chat 15.0.3 allows HTML Injection.
Egain Chat 15.0.3
7.5
CVSSv2
CVE-2019-13976
eGain Chat 15.0.3 allows unrestricted file upload.
Egain Chat 15.0.3
7.5
CVSSv2
CVE-2019-1010104
TechyTalk Quick Chat WordPress Plugin All up to the latest is affected by: SQL Injection. The impact is: Access to the database. The component is: like_escape is used in Quick-chat.php line 399. The attack vector is: Crafted ajax request.
Techytalk Quick Chat
NA
CVE-2022-39279
discourse-chat is a plugin for the Discourse message board which adds chat functionality. In versions before 0.9 some places render a chat channel's name and description in an unsafe way, allowing staff members to cause an cross site scripting (XSS) attack by inserting unsaf...
Discourse Discourse-chat
4.3
CVSSv2
CVE-2018-11105
There is stored cross site scripting in the wp-live-chat-support plugin prior to 8.0.08 for WordPress via the "name" (aka wplc_name) and "email" (aka wplc_email) input fields to wp-json/wp_live_chat_support/v1/start_chat whenever a malicious attacker would ini...
3cx Live Chat
4.3
CVSSv2
CVE-2017-18507
The wp-live-chat-support plugin prior to 7.1.05 for WordPress has XSS.
3cx Live Chat
4.3
CVSSv2
CVE-2019-14950
The wp-live-chat-support plugin prior to 8.0.27 for WordPress has XSS via the GDPR page.
3cx Live Chat
4.3
CVSSv2
CVE-2017-2187
Cross-site scripting vulnerability in WP Live Chat Support prior to version 7.0.07 allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors.
3cx Live Chat
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-52710
arbitrary
CVE-2024-5272
CVE-2024-2961
brute force
remote
CVE-2024-32944
CVE-2024-36241
CVE-2024-5274
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
2
3
4
5
6
7
8
9
10
NEXT »