CVE-2024-49281
EUVD-2024-4334717.10.2024, 20:15
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Ninja Team Click to Chat – WP Support All-in-One Floating Widget support-chat allows Stored XSS.This issue affects Click to Chat – WP Support All-in-One Floating Widget: from n/a through <= 2.3.3.Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| ninjateam | click_to_chat | 𝑥 < 2.3.4 |
𝑥
= Vulnerable software versions