Extension WordPress

Vulnérabilités Simple Ajax Chat – Add a Fast, Secure Chat Box

Cette page rassemble les failles publiées pour Simple Ajax Chat – Add a Fast, Secure Chat Box, leurs plages de versions affectées et les correctifs signalés dans la base locale.

8Vulnérabilités
0Critiques
8Avec correctif
7,2CVSS maximal

Historique de sécurité

CVE et vulnérabilités de Simple Ajax Chat – Add a Fast, Secure Chat Box

8 fiches

CVE-2026-2987 Moyenne · 6,1
Simple Ajax Chat – Add a Fast, Secure Chat Box

Simple Ajax Chat <= 20260217 – Unauthenticated Stored Cross-Site Scripting via 'c'

The Simple Ajax Chat plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'c' parameter in versions up to, and including, 20260217 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated…

Versions affectées

*-20260217

Correctif

20260301

Publication

12/03/2026

CVE-2024-2470 Moyenne · 4,4
Simple Ajax Chat – Add a Fast, Secure Chat Box

Simple Ajax Chat – Add a Fast, Secure Chat Box <= 20240318 – Authenticated (Admin+) Stored Cross-Site Scripting

The Simple Ajax Chat – Add a Fast, Secure Chat Box plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 20240318 due to insufficient input sanitization and output…

Versions affectées

*-20240318

Correctif

20240412

Publication

14/05/2024

CVE-2024-2956 Moyenne · 4,4
Simple Ajax Chat – Add a Fast, Secure Chat Box

Simple Ajax Chat <= 20231101 – Authenticated (Admin+) Stored Cross-Site Scripting

The Simple Ajax Chat – Add a Fast, Secure Chat Box plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 20231101 due to insufficient input sanitization and output…

Versions affectées

*-20231101

Correctif

20240216

Publication

26/03/2024

CVE-2022-25610 Moyenne · 5,4
Simple Ajax Chat – Add a Fast, Secure Chat Box

Simple Ajax Chat <= 20220115 – Unauthenticated Stored Cross-Site Scripting

The Simple Ajax Chat plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 20220115 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary…

Versions affectées

*-20220115

Correctif

20220216

Publication

16/02/2022

WP Commander

Rechercher dans toute la base WordPress

Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.

Ouvrir le tableau des vulnérabilités