CVE-2026-6160: Code-Projects Simple Chatbox

Medium severity, CVSS 5.3. EPSS: 0.5% chance of exploitation in the next 30 days.

A vulnerability was found in code-projects Simple ChatBox 1.0. Affected by this issue is the function SimpleChatbox_PHP of the file chatbox.sql of the component Endpoint. Performing a manipulation results in file and directory information exposure. It is possible to initiate the attack remotely. The exploit has been made public and could be used.

Affected products

Published 2026-04-13. Last modified 2026-06-17.