CVE-2025-1450
- EPSS 0.1%
- Veröffentlicht 27.02.2025 10:15:10
- Zuletzt bearbeitet 11.03.2025 15:46:05
The Floating Chat Widget: Contact Chat Icons, Telegram Chat, Line Messenger, WeChat, Email, SMS, Call Button, WhatsApp – Chaty plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘data-hover’ parameter in all versions up to, and...
CVE-2024-4149
- EPSS 0.19%
- Veröffentlicht 13.06.2024 06:15:12
- Zuletzt bearbeitet 26.03.2025 15:15:52
The Floating Chat Widget: Contact Chat Icons, WhatsApp, Telegram Chat, Line Messenger, WeChat, Email, SMS, Call Button WordPress plugin before 3.2.3 does not sanitise and escape some of its settings, which could allow high privilege users such as ad...
CVE-2024-2972
- EPSS 0.09%
- Veröffentlicht 24.04.2024 05:15:47
- Zuletzt bearbeitet 08.05.2025 19:11:27
The Floating Chat Widget: Contact Chat Icons, WhatsApp, Telegram Chat, Line Messenger, WeChat, Email, SMS, Call Button WordPress plugin before 3.1.9 does not sanitise and escape some of its settings, which could allow high privilege users such as ad...