CVE-2019-6780: Kaine Wise Chat

Medium severity, CVSS 6.1. EPSS: 4.9% chance of exploitation in the next 30 days.

The Wise Chat plugin before 2.7 for WordPress mishandles external links because rendering/filters/post/WiseChatLinksPostFilter.php omits noopener and noreferrer.

Affected products

  • Kaine Wise Chat: before 2.7 (fixed in 2.7)

Published 2019-01-24. Last modified 2026-06-17.