WordPress Plugin Floating Chat Widget:Contact Chat Icons Telegram Chat Line WeChat Email SMS Call Button-Chaty SQL Injection - CVE-2022-3858 - Vulnerability Database

WordPress Plugin Floating Chat Widget:Contact Chat Icons Telegram Chat Line WeChat Email SMS Call Button-Chaty SQL Injection - CVE-2022-3858

High
Reference: CVE-2022-3858
Title: WordPress Plugin Floating Chat Widget:Contact Chat Icons Telegram Chat Line WeChat Email SMS Call Button-Chaty SQL Injection
Overview:

WordPress Plugin Floating Chat Widget:Contact Chat Icons Telegram Chat Line WeChat Email SMS Call Button-Chaty is prone to an SQL injection vulnerability because it fails to sufficiently sanitize user-supplied data before using it in an SQL query. Exploiting this issue could allow an attacker to compromise the application access or modify data or exploit latent vulnerabilities in the underlying database. WordPress Plugin Floating Chat Widget:Contact Chat Icons Telegram Chat Line WeChat Email SMS Call Button-Chaty version 3.0.2 is vulnerable prior versions may also be affected.