Unrated severityNVD Advisory· Published Aug 19, 2024· Updated Aug 21, 2024
SmartSearch WP <= 2.4.4 - Unauthenticated Stored XSS
CVE-2024-6843
Description
The Chatbot with ChatGPT WordPress plugin before 2.4.5 does not sanitise and escape user inputs, which could allow unauthenticated users to perform Stored Cross-Site Scripting attacks against admins
Affected products
1- Range: 0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- wpscan.com/vulnerability/9a5cb440-065a-445a-9a09-55bd5f782e85/mitreexploitvdb-entrytechnical-description
News mentions
0No linked articles in our index yet.