Input validation vulnerability in 3CX Free Live Chat 8.1.9

The WP Live Chat Support plugin for WordPress is vulnerable to malicious code being stored on the website. This means that attackers with limited access to the website can insert code into it that will execute without the user’s knowledge when they view a certain page. This vulnerability affects versions of the plugin up to and including 8.1.9, and is caused by the plugin not properly checking and filtering user input or output.

Detected in:

3CX Free Live Chat, Calls & Messaging fixed vulnerable versions:
3CX Free Live Chat, Calls & WhatsApp fixed vulnerable versions:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.