6.1
CVSSv3

CVE-2022-3415

Published: 14/11/2022 Updated: 16/11/2022
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

The Chat Bubble WordPress plugin prior to 2.3 does not sanitise and escape some contact parameters, which could allow unauthenticated malicious users to set Stored Cross-Site Scripting payloads in them, which will trigger when an admin view the related contact message

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

bluecoral chat bubble