Extension WordPress
Vulnérabilités Telegram Bot & Channel
Cette page rassemble les failles publiées pour Telegram Bot & Channel, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Telegram Bot & Channel
3 fiches
Telegram Bot & Channel <= 4.1 – Unauthenticated Stored Cross-Site Scripting via Telegram Username
The Telegram Bot & Channel plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Telegram username in all versions up to, and including, 4.1 due to insufficient input sanitization and output escaping. This makes it possible…
*-4.1
4.1.1
24/11/2025
Telegram Bot & Channel <= 3.8.2 – Cross-Site Request Forgery
The Telegram Bot & Channel plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 3.8.2. This is due to missing or incorrect nonce validation on a function. This makes it possible for…
*-3.8.2
4.0
20/07/2024
Telegram Bot & Channel <= 3.6.2 – Authenticated (Administrator+) Stored Cross-Site Scripting
The Telegram Bot & Channel plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in versions up to, and including, 3.6.2 due to insufficient input sanitization and output escaping. This makes it possible for authenticated…
*-3.6.2
3.6.3
29/05/2023
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.