Логотип exploitDog
bind:CVE-2024-4664
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-4664

Количество 2

Количество 2

nvd логотип

CVE-2024-4664

больше 1 года назад

The WP Chat App WordPress plugin before 3.6.5 does not sanitise and escape some of its settings, which could allow high privilege users such as admins to perform Cross-Site Scripting attacks even when unfiltered_html is disallowed.

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-fg8w-72jj-fqx9

больше 1 года назад

The WP Chat App WordPress plugin before 3.6.5 does not sanitise and escape some of its settings, which could allow high privilege users such as admins to perform Cross-Site Scripting attacks even when unfiltered_html is disallowed.

CVSS3: 4.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-4664

The WP Chat App WordPress plugin before 3.6.5 does not sanitise and escape some of its settings, which could allow high privilege users such as admins to perform Cross-Site Scripting attacks even when unfiltered_html is disallowed.

CVSS3: 4.8
0%
Низкий
больше 1 года назад
github логотип
GHSA-fg8w-72jj-fqx9

The WP Chat App WordPress plugin before 3.6.5 does not sanitise and escape some of its settings, which could allow high privilege users such as admins to perform Cross-Site Scripting attacks even when unfiltered_html is disallowed.

CVSS3: 4.8
0%
Низкий
больше 1 года назад

Уязвимостей на страницу