Skip to content

Known CVE

Steveas WP Live Chat Shoutbox <= 1.4.2 - SQL Injection

The Steveas WP Live Chat Shoutbox WordPress plugin through 1.4.2 does not sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection.

CVE-2023-1020

Critical2023CVSS 9.8CWE-89

cve2023 · wpscan · sqli · wordpress · wp-plugin · wp · wp-shoutbox-live-chat · wp_live_chat_shoutbox_project

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website