← Back

Kainex

kainex

2 CVEs • 2 products

Products (2)

Click to collapse
Toggle
Wise Forms
wise_forms
Wise Chat
wise_chat

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Kainex
1Wise Chat
Jun 17, 2026
May 17, 2025
N/A· v4
7.5 HIGH· v3
N/A· v2
The Wise Chat plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.3.3 via the 'uploads' directory. This makes it possible for unauthenticated attackers to extract...Show more
The Wise Chat plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.3.3 via the 'uploads' directory. This makes it possible for unauthenticated attackers to extract sensitive data stored insecurely in the /wp-content/uploads directory which can contain file attachments included in chat messages. The vulnerability was partially patched in version 3.3.3.Show less
1Kainex
1Wise Forms
Jun 17, 2026
Feb 17, 2025
N/A· v4
6.1 MEDIUM· v3
N/A· v2
The Wise Forms WordPress plugin through 1.2.0 does not sanitise and escape some of its settings, which could allow unauthenticated users to perform Stored Cross-Site Scripting attacks via malicious form submissions.