The discovery of CVE-2024-2837 has unveiled a chilling reality within WP Chat App, where a Stored XSS vulnerability lurks. This flaw permits the injection of malicious scripts, opening the floodgates to potential backdoors. Let’s delve into the depths of this digital menace. (if an attacker has previously hijacked an administrator or editor account, he can plant a backdoor to regain access back).
CVE-2024-2837 – WP Chat App – Stored XSS to JS backdoor creation – POC
![CVE-2024-2837 – WP Chat App – Stored XSS to JS backdoor creation – POC CVE-2024-2837 – WP Chat App – Stored XSS to JS backdoor creation – POC](https://research.cleantalk.org/wp-content/uploads/2023/10/New_1_not_safe-1.png)