mirror of
https://github.com/0xMarcio/cve.git
synced 2025-06-19 17:30:12 +00:00
819 B
819 B
CVE-2024-1983
Description
The Simple Ajax Chat WordPress plugin before 20240223 does not prevent visitors from using malicious Names when using the chat, which will be reflected unsanitized to other users.
POC
Reference
- https://wpscan.com/vulnerability/bf3a31de-a227-4db1-bd18-ce6a78dc96fb/
- https://wpscan.com/vulnerability/bf3a31de-a227-4db1-bd18-ce6a78dc96fb/