Vulnerability CVE-2022-3415


Published: 2022-11-14

Description:
The Chat Bubble WordPress plugin before 2.3 does not sanitise and escape some contact parameters, which could allow unauthenticated attackers to set Stored Cross-Site Scripting payloads in them, which will trigger when an admin view the related contact message

 References:
https://wpscan.com/vulnerability/012c5b64-ef76-4539-afd8-40f6c329ae88

Copyright 2026, cxsecurity.com

 

Back to Top