CVE-2023-49168
14.12.2023, 15:15
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WordPlus Better Messages Live Chat for WordPress, BuddyPress, PeepSo, Ultimate Member, BuddyBoss allows Stored XSS.This issue affects Better Messages Live Chat for WordPress, BuddyPress, PeepSo, Ultimate Member, BuddyBoss: from n/a through 2.4.0.
Vendor | Product | Version |
---|---|---|
wordplus | better_messages | 𝑥 < 2.4.1 |
𝑥
= Vulnerable software versions
References