| |
Vulnerability CVE-2023-2811
Published: 2023-06-19
| Description: |
The AI ChatBot WordPress plugin before 4.5.6 does not sanitise and escape numerous of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks to all admin when setting chatbot and all client when using chatbot |
Type:
CWE-79 (Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting'))
References: |
https://wpscan.com/vulnerability/82a81721-0435-45a6-bd5b-dc90186cf803
|
|
|
closedb();
?>
Copyright 2026, cxsecurity.com
|
|
|