Single-user-chat <= 0.5 - Authenticated (Subscriber+) Limited Options Update
highThe Single-user-chat plugin for WordPress is vulnerable to unauthorized modification of data that can lead to a denial of service due to insufficient validation on the 'single_user_chat_update_login' function in all versions up to, and including, 0.5. This makes it possible for authenticated attackers, with subscriber-...
- CVSS:
- 8.1
- Affected:
- up to 0.5
- Fix:
- No patched version reported
- Disclosed:
- Jan 30, 2025