Known vulnerabilities in the Chatbot plugin
18 security advisories have been published for the Chatbot plugin. Each entry below states what an attacker can do, what privilege they need, and the version the issue was fixed in.
- Chatbot - Broken Access Control (CVE-2026-16774) MEDIUM
- Chatbot - Information Disclosure (CVE-2026-16773) MEDIUM
- Chatbot - Broken Access Control (CVE-2026-15610) MEDIUM
- Chatbot - Broken Access Control (CVE-2026-15106) MEDIUM
- ChatBot - Cross-Site Scripting (XSS) (CVE-2026-57362) HIGH
- Chatbot - Cross-Site Scripting (XSS) (CVE-2026-13731) HIGH
- ChatBot - Broken Access Control (CVE-2026-40788) HIGH
- Chatbot - Cross-Site Scripting (XSS) (CVE-2024-6669) MEDIUM
- Chatbot - Broken Access Control (CVE-2024-5992) MEDIUM
- Chatbot - Broken Access Control (CVE-2024-5993) MEDIUM
- Chatbot - Broken Access Control (CVE-2024-0453) MEDIUM
- Chatbot - Broken Access Control (CVE-2024-0452) MEDIUM
- Chatbot - Broken Access Control (CVE-2024-0451) MEDIUM
- Chatbot - Cross-Site Scripting (XSS) (CVE-2023-5691) MEDIUM
- Chatbot - Information Disclosure (CVE-2023-5254) MEDIUM
- Chatbot - Path Traversal (CVE-2023-5241) CRITICAL
- Chatbot - Security Vulnerability (CVE-2023-5212) CRITICAL
- Chatbot - SQL Injection (CVE-2023-5204) CRITICAL