ZeroHour

CVE-2024-1983

PoC
CVSS 3.1
7.1 high
EPSS
<1%p38
Published
()
Modified
Description

The Simple Ajax Chat WordPress plugin before 20240223 does not prevent visitors from using malicious Names when using the chat, which will be reflected unsanitized to other users.

Vendors
plugin-planet
Products
simple ajax chat
Ecosystems
WordPress
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L

In the news

No ingested article mentions this CVE yet.