CVE-2025-22813: WordPress ChatBot Conversational Forms plugin <= 1.4.2 - Cross Site Scripting (XSS) vulnerability
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in QuantumCloud Conversational Forms for ChatBot conversational-forms allows Stored XSS.This issue affects Conversational Forms for ChatBot: from n/a through <= 1.4.2.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-22813?
The severity of CVE-2025-22813 is classified as a Cross-site Scripting (XSS) vulnerability affecting versions up to 1.4.2 of Conversational Forms for ChatBot.
How do I fix CVE-2025-22813?
To fix CVE-2025-22813, update the Conversational Forms for ChatBot to the latest version that addresses this vulnerability.
What software is affected by CVE-2025-22813?
CVE-2025-22813 affects the ChatBot for WordPress - WPBot Conversational Forms plugin, specifically versions from n/a through 1.4.2.
Is CVE-2025-22813 a stored XSS vulnerability?
Yes, CVE-2025-22813 is a stored Cross-site Scripting vulnerability that allows attackers to inject malicious scripts.
Who is the vendor for the vulnerable software in CVE-2025-22813?
The vendor for the vulnerable software in CVE-2025-22813 is WordPress, specifically for the plugin WPBot Conversational Forms.