CVE-2024-49281

Publication date

2024-10-17 19:15:28

Family

Patchstack

State

PUBLISHED

Description

Improper Neutralization of Special Elements used in an OS Command (OS Command Injection) vulnerability in Ninja Team Click to Chat – WP Support All-in-One Floating Widget support-chat allows Stored XSS.This issue affects Click to Chat – WP Support All-in-One Floating Widget: from n/a through <= 2.3.3.