All 4 CVE vulnerabilities found in Cliengo – Chatbot, with AI-generated Chinese analysis, references, and POCs.
Vendor: cliengo
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-69388 | WordPress Cliengo – Chatbot plugin <= 3.0.4 - Broken Access Control vulnerability CWE-862 | 9.1AI | CriticalAI | 2026-02-20 |
| CVE-2024-5992 | Cliengo - Chatbot <= 3.0.2 - Missing Authorization to Unauthenticated Chatbot Settings Update CWE-862 | 6.5 | Medium | 2024-07-09 |
| CVE-2024-5993 | Cliengo - Chatbot <= 3.0.2 - Missing Authorization to Authorized (Subscriber+) Chatbot Settings Update CWE-862 | 5.4 | Medium | 2024-07-09 |
| CVE-2024-37923 | WordPress Cliengo – Chatbot plugin <= 3.0.4 - Cross Site Request Forgery (CSRF) vulnerability CWE-352 | 5.4 | Medium | 2024-07-09 |
All 4 known CVE vulnerabilities affecting Cliengo – Chatbot with full Chinese analysis, references, and POCs where available.