The Simple Ajax Chat WordPress plugin before 20240223 does not prevent visitors from using malicious Names when using the chat, which will be reflected unsanitized to other users.
Affected Software
| Name | Vendor | Start Version | End Version |
|---|
| Simple_ajax_chat | Plugin-planet | * | 20240223 (excluding) |
References