Cross-site scripting (XSS) stored via “WordPress Free Live Chat Support plugin” (versions <= 1.0.11) cross-site request forgery (CSRF) vulnerability

Details

Cross-site scripting (XSS) stored via a cross-site request forgery (CSRF) vulnerability discovered in the WordPress Free Live Chat Support plugin (version <= 1.0.11).

solution

Deactivate and remove. This plugin is closed as of June 14, 2022 and cannot be downloaded.

Sources.

Free Live Chat Support

脆弱性情報を受け取る