CVE-2014-4567: Videowhisper Video Comments Webcam Recorder
Medium severity, CVSS 6.1. EPSS: 1.2% chance of exploitation in the next 30 days.
Cross-site scripting (XSS) vulnerability in comments/videowhisper2/r_logout.php in the Video Comments Webcam Recorder plugin 1.55, as downloaded before 20140116 for WordPress allows remote attackers to inject arbitrary web script or HTML via the message parameter.
Affected products
- Videowhisper Video Comments Webcam Recorder: up to and including 1.55
Published 2019-12-27. Last modified 2026-06-17.