Vulnerabilities > Ninjateam > Chat FOR Telegram

DATE CVE VULNERABILITY TITLE RISK
2025-05-30 CVE-2025-5236 Cross-site Scripting vulnerability in Ninjateam Chat for Telegram
The NinjaTeam Chat for Telegram plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘username’ parameter in all versions up to, and including, 1.1 due to insufficient input sanitization and output escaping.
network
low complexity
ninjateam CWE-79
5.4