Extension WordPress
Vulnérabilités Simple Ajax Chat – Add a Fast, Secure Chat Box
Cette page rassemble les failles publiées pour Simple Ajax Chat – Add a Fast, Secure Chat Box, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Simple Ajax Chat – Add a Fast, Secure Chat Box
8 fiches
Simple Ajax Chat <= 20260217 – Unauthenticated Stored Cross-Site Scripting via 'c'
The Simple Ajax Chat plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'c' parameter in versions up to, and including, 20260217 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated…
*-20260217
20260301
12/03/2026
Simple Ajax Chat <= 20251121 – Unauthenticated Information Exposure
The Simple Ajax Chat – Add a Fast, Secure Chat Box plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 20251121. This makes it possible for unauthenticated attackers to extract sensitive…
*-20251121
20260217
17/02/2026
Simple Ajax Chat – Add a Fast, Secure Chat Box <= 20240318 – Authenticated (Admin+) Stored Cross-Site Scripting
The Simple Ajax Chat – Add a Fast, Secure Chat Box plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 20240318 due to insufficient input sanitization and output…
*-20240318
20240412
14/05/2024
Simple Ajax Chat <= 20240216 – Unauthenticated Stored Cross-Site Scripting
The Simple Ajax Chat – Add a Fast, Secure Chat Box plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the name field in all versions up to, and including, 20240216 due to insufficient input sanitization and…
*-20240216
20240223
26/03/2024
Simple Ajax Chat <= 20231101 – Authenticated (Admin+) Stored Cross-Site Scripting
The Simple Ajax Chat – Add a Fast, Secure Chat Box plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 20231101 due to insufficient input sanitization and output…
*-20231101
20240216
26/03/2024
Simple Ajax Chat <= 20220115 – Cross-Site Request Forgery
Cross-Site Request Forgery (CSRF) in Simple Ajax Chat (WordPress plugin)
*-20220115
20220216
15/04/2022
Simple Ajax Chat Plugin <= 20220115 – Sensitive Information Disclosure
Sensitive Information Disclosure (sac-export.csv) in Simple Ajax Chat (WordPress plugin)
*-20220115
20220216
15/04/2022
Simple Ajax Chat <= 20220115 – Unauthenticated Stored Cross-Site Scripting
The Simple Ajax Chat plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 20220115 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary…
*-20220115
20220216
16/02/2022
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.