Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WP Socio WP Telegram Widget and Join Link allows Stored XSS.This issue affects WP Telegram Widget and Join Link: from n/a through 2.1.27.
We have discovered 34 live websites that are affected by CVE-2024-43309.
| Product | |
| Category | Wordpress Plugins |
| Vulnerable Domains | 34 live websites (100% of Wptelegram Widget install base) |
| Vulnerable Versions |
|
| Vulnerable Versions Count | 0 versions ( less than 0.1% of all versions) |
| 5 websites | |
| 7 websites | |
| 5 websites | |
| 4 websites | |
| 2 websites | |
| 2 websites | |
| 2 websites | |
| 1 websites | |
| 1 websites | |
| 1 websites |
| .com | 7 websites |
| .ru | 7 websites |
| .it | 4 websites |
| .com.br | 1 websites |
| .cz | 1 websites |
| .info | 1 websites |
| .io | 1 websites |
| .org | 1 websites |
| .pl | 1 websites |
| Domain | Country | Rank | Contacts |
|---|---|---|---|
| ***********.ru | *,***,*** | ||
| **********.com | *,***,*** | ||
| *********.***.br | *,***,*** | ||
| ********.***.ua | **,***,*** | ||
| ****.***.ir | **,***,*** | ||
| **************.***.ua | **,***,*** | ||
| ************.hu | **,***,*** | ||
| **********.cz | **,***,*** | ||
| ***************.pl | **,***,*** | ||
| ***********.it | **,***,*** |
FAQ