cleantalk
Vulnerabilities and Security Researches

Tidio – Live Chat & AI Chatbots, d4067348-a597-40bc-8ec8-a751efde353a

Published on
-
Research Description
Tidio – Live Chat &amp; AI Chatbots [tidio-live-chat] < 4.2.0 Tidio Live Chat &lt;= 4.1.0 - CSRF to Stored XSS A CSRF vulnerability in the Tidio Live Chat WordPress Plugin &lt;= 4.1.0 allows attackers to trick admins into adding a Stored XSS payload presented to all visitors. Fixed in 4.2.0.
Affected versions
max 4.2.0.
Status
vulnerable