MEDIUM6.1
GHSA-9hgc-wpc5-v8p9
An attacker can execute malicious javascript in Live Helper Chat
Quick fix
GHSA-9hgc-wpc5-v8p9 — remdex/livehelperchat: upgrade to the fixed version with the command below.
composer require remdex/livehelperchat:^3.99Details
Cross-site Scripting (XSS) in GitHub repository livehelperchat/livehelperchat prior to 3.99v. Attacker can execute malicious javascript on application.
Are you affected?
Enter the version of the package you're using.
Affected packages
Packagist/remdex/livehelperchat
Introduced in:
0Fixed in: 3.99Fix
composer require remdex/livehelperchat:^3.99