Where
-Infinity
0

WordPress AI ChatBotWPBOT < 7.1.0 - Admin+ Stored XSS

Risk 18
Severity
3.5
EPSS
0.05%
First published (updated )

QuantumCloud Wpbot WordpressAI ChatBot for WordPress – WPBot <= 5.5.7 - Authenticated (Administrator+) Stored Cross-Site Scripting

Risk 24
Severity
5.5
EPSS
0.05%
First published (updated )

AI ChatBot ChatBotAI ChatBot <= 5.3.4 - Missing Authorization via openai_file_upload_callback

Risk 44
Severity
7.7
First published (updated )

WordPress AI ChatBotAI ChatBot <= 5.3.4 - Missing Authorization via openai_file_delete_callback

Risk 44
Severity
7.7
First published (updated )

QuantumCloud Wpbot WordpressAI ChatBot <= 5.3.4 - Missing Authorization via openai_file_list_callback

Risk 26
Severity
5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

QuantumCloud Wpbot WordpressWordPress ChatBot Plugin <= 5.1.0 is vulnerable to PHP Object Injection

Risk 61
Severity
9.8
EPSS
0.07%
First published (updated )

QuantumCloud Wpbot WordpressWordPress ChatBot Plugin <= 4.7.8 is vulnerable to SQL Injection

Risk 47
Severity
7.6
First published (updated )

QuantumCloud Wpbot WordpressAI ChatBot <= 4.8.9 and 4.9.2 - Missing Authorization on AJAX actions

Risk 61
Severity
9.8
EPSS
0.36%
First published (updated )

QuantumCloud Wpbot WordpressAI ChatBot <= 4.8.9 and 4.9.2 - Cross-Site Request Forgery on AJAX actions

Risk 24
Severity
5.4
EPSS
0.06%
First published (updated )

QuantumCloud Wpbot WordpressAI ChatBot <= 4.8.9 - Unauthenticated Sensitive Information Exposure via qcld_wb_chatbot_check_user

Risk 19
Severity
5.3
EPSS
0.50%
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

QuantumCloud Wpbot WordpressAI ChatBot <= 4.8.9 - Unauthenticated SQL Injection via qc_wpbo_search_response

Risk 86
Severity
9.8
First published (updated )

QuantumCloud Wpbot WordpressAI ChatBot <= 4.8.9 and 4.9.2- Authenticated (Subscriber+) Arbitrary File Deletion via qcld_openai_delete_training_file

Risk 68
Severity
9.6
First published (updated )

QuantumCloud Wpbot WordpressAI ChatBot <= 4.8.9 and 4.9.2 - Authenticated (Subscriber+) Directory Traversal to Arbitrary File Write via qcld_openai_upload_pagetraining_file

Risk 68
Severity
9.6
First published (updated )

QuantumCloud Ai Chatbot WordpressWordPress ChatBot Plugin <= 4.7.8 is vulnerable to Cross Site Request Forgery (CSRF)

Risk 77
Severity
8.8
First published (updated )

QuantumCloud Ai Chatbot WordpressAI ChatBot < 4.6.1 - Admin+ Stored Cross-Site Scripting

Risk 29
Severity
4.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

QuantumCloud Ai Chatbot WordpressWordPress AI ChatBot Plugin <= 4.3.0 is vulnerable to Cross Site Scripting (XSS)

Risk 40
Severity
5.9
First published (updated )

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203