Skip to content
Features
Pricing
Solutions
Status
API Details
CLI Scanner
Vulnerabilities
Themes
WordPress
Plugins
Stats
Submit Vulnerabilities
Leaderboard
Resources
Blog
Enterprise Features
How to Install WPScan
WPScan Glossary
2024 Website Threat Report
Search
WordPress Plugin Vulnerabilities
Show Previous Letters
0-9
a
b
c
d
e
f
g
h
i
j
k
l
m
n
o
p
q
r
s
t
u
v
w
x
y
z
Show Next Letters
Slug
Published
Title
Slug
chatbot
Published
2023-01-27
Title
AI ChatBot < 4.3.1 - Admin+ Stored XSS
Slug
chatbot
Published
2023-04-12
Title
ChatBot < 4.5.1 - Admin+ Stored XSS
Slug
chatbot
Published
2023-04-12
Title
ChatBot < 4.4.9 - Unauthenticated Stored XSS
Slug
chatbot
Published
2023-04-12
Title
ChatBot < 4.4.9 - Subscriber+ OpenAI Settings Update to Stored XSS
Slug
chatbot
Published
2023-04-12
Title
ChatBot < 4.4.7 - Unauthenticated PHP Object Injection
Slug
chatbot
Published
2023-04-12
Title
ChatBot < 4.4.5 - Stored XSS via CSRF
Slug
chatbot
Published
2023-05-22
Title
AI ChatBot < 4.5.5 - Admin+ Stored Cross-Site Scripting
Slug
chatbot
Published
2023-05-25
Title
AI ChatBot < 4.5.6 - Admin+ Stored Cross-Site Scripting
Slug
chatbot
Published
2023-06-19
Title
AI ChatBot < 4.6.1 - Admin+ Stored Cross-Site Scripting
Slug
chatbot
Published
2023-08-08
Title
Chatbot < 4.7.8 - Admin+ Stored XSS in FAQ Builder
Slug
chatbot
Published
2023-08-08
Title
Chatbot < 4.7.8 - Admin+ Stored XSS in Language Settings
Slug
chatbot
Published
2023-10-03
Title
ChatBot < 4.7.9 - CSRF
Slug
chatbot
Published
2023-10-11
Title
ChatBot < 4.9.1 - Unauthenticated Sensitive Data Disclosure
Slug
chatbot
Published
2023-10-11
Title
ChatBot < 4.9.1 - Unauthenticated Blind SQL Injection
Slug
chatbot
Published
2023-10-11
Title
AI ChatBot < 4.9.1 - Cross-Site Request Forgery (CSRF)
Slug
chatbot
Published
2023-10-11
Title
AI ChatBot < 4.9.3 - Missing authorization in AJAX calls
Slug
chatbot
Published
2023-10-19
Title
AI ChatBot < 4.9.3 - Cross-Site Request Forgery (CSRF)
Slug
chatbot
Published
2023-10-11
Title
AI ChatBot < 4.9.1 - Subscriber+ Arbitrary File Deletion
Slug
chatbot
Published
2023-10-19
Title
AI ChatBot < 4.9.3 - Subscriber+ Arbitrary File Deletion
Slug
chatbot
Published
2023-10-11
Title
AI ChatBot < 4.9.1 - Missing authorization in AJAX calls
Slug
chatbot
Published
2023-10-11
Title
AI ChatBot < 4.9.1 and 4.9.2 - Authenticated (Subscriber+) Directory Traversal to Arbitrary File Write via qcld_openai_upload_pagetraining_file
Slug
chatbot
Published
2023-11-01
Title
ChatBot 4.8.6 - 4.9.6 - Authenticated (Administrator+) Stored Cross-Site Scripting in FAQ Builder
Slug
chatbot
Published
2023-11-23
Title
ChatBot < 4.7.9 - Authenticated (Administrator+) SQL Injection
Slug
chatbot
Published
2024-01-19
Title
ChatBot < 5.1.1 - Unauthenticated PHP Object Injection
Slug
chatbot
Published
2024-05-21
Title
AI ChatBot < 5.3.6 - Missing Authorization via openai_file_list_callback
Previous
22
23
24
25
26
Next
Subscribe
Subscribed
WPScan
Join 30,889 other subscribers
Sign me up
Already have a WordPress.com account?
Log in now.
WPScan
Subscribe
Subscribed
Sign up
Log in
Report this content
View site in Reader
Manage subscriptions
Collapse this bar