Extension WordPress
Vulnérabilités Cliengo – Chatbot
Cette page rassemble les failles publiées pour Cliengo – Chatbot, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Cliengo – Chatbot
4 fiches
Cliengo – Chatbot <= 3.0.4 – Missing Authorization
The Cliengo – Chatbot plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in versions up to, and including, 3.0.4. This makes it possible for authenticated attackers, with subscriber-level access…
*-3.0.4
3.0.5
09/02/2026
Cliengo – Chatbot <= 3.0.4 – Cross-Site Request Forgery
The Cliengo – Chatbot plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.0.4. This is due to missing or incorrect nonce validation on an unknown function. This makes it possible…
*-3.0.4
3.0.5
09/07/2024
Cliengo – Chatbot <= 3.0.2 – Missing Authorization to Unauthenticated Chatbot Settings Update
The Cliengo – Chatbot plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'update_chatbot_token' and 'update_chatbot_position' functions in all versions up to, and including, 3.0.2. This makes it possible…
*-3.0.2
3.0.3
08/07/2024
Cliengo – Chatbot <= 3.0.2 – Missing Authorization to Authorized (Subscriber+) Chatbot Settings Update
The Cliengo – Chatbot plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'update_session' function in all versions up to, and including, 3.0.2. This makes it possible for authenticated…
*-3.0.2
3.0.3
08/07/2024
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.