CVE-2024-2513
The WP Chat App plugin before version 3.6.3 contains a cross-site scripting vulnerability that was discovered by Ngô Thiên An. An attacker could exploit this flaw to inject harmful scripts into a website, including malicious redirects, unwanted advertisements, and arbitrary HTML content that would execute when visitors access the affected site. The issue was resolved in version 3.6.3, and users should upgrade to this version or later to eliminate the risk.
Based on public CVE data (MITRE/NVD).