CVE-2025-31092
- EPSS 0.2%
- Veröffentlicht 27.03.2025 23:21:01
- Zuletzt bearbeitet 23.04.2026 15:27:41
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ninja Team Click to Chat – WP Support All-in-One Floating Widget support-chat allows Stored XSS.This issue affects Click to Chat – WP Support All-in...
CVE-2024-10055
- EPSS 0.36%
- Veröffentlicht 18.10.2024 08:15:03
- Zuletzt bearbeitet 08.04.2026 19:19:21
The Click to Chat – WP Support All-in-One Floating Widget plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's wpsaio_snapchat shortcode in all versions up to, and including, 2.3.3 due to insufficient input sanitization ...
CVE-2024-49281
- EPSS 0.55%
- Veröffentlicht 17.10.2024 20:15:11
- Zuletzt bearbeitet 23.04.2026 15:19:34
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Ninja Team Click to Chat – WP Support All-in-One Floating Widget support-chat allows Stored XSS.This issue affects Click to Chat – WP Support ...