The Autochat Automatic Conversation WordPress plugin through 1.1.7 does not sanitise and escape user input before outputting it back on the page, leading to a cross-site Scripting attack.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Automatic_conversation | Autochat | * | 1.1.7 (including) |