Skip to content

Known CVE

WordPress AI ChatBot (WPBot) <= 4.8.9 - SQL Injection

ChatBot plugin for WordPress up to 4.8.9 contains a sql_injection caused by insufficient escaping and lack of preparation on the $strid parameter, letting unauthenticated attackers extract sensitive data, exploit requires no authentication.

CVE-2023-5204

Critical2023CVSS 9.8CWE-89

cve2023 · wordpress · wp · wp-plugin · sqli · chatbot · wpbot · unauth

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website