JS Help Desk – AI-Powered Support & Ticketing System 2.8.2 - Unauthenticated SQL Injection via 'js-support-ticket-token-tkstatus' Cookie
JS Help Desk – AI-Powered Support & Ticketing System
Minimum safe version
3.0.5
Update to 3.0.5 or later to address 25 fixable vulnerabilities
Latest available3.0.8 ✓
N/A
2026-03-03< 2.8.3
N/A
2026-03-25< 3.0.5
JS Help Desk – AI-Powered Support & Ticketing System <= 3.0.4 - Unauthenticated SQL Injection via 'multiformid' Parameter
High 8.5
2026-03-25< 3.0.4
CVE-2026-32534
Medium 6.5
2026-03-25< 3.0.4
CVE-2026-32535
High 8.5
2026-02-20< 3.0.2
CVE-2026-24959
High 8.1
2025-04-01< 2.9.3
CVE-2025-30901
Critical 10.0
2025-04-01< 2.9.3
CVE-2025-30886
High 7.5
2025-04-01< 2.9.2
CVE-2025-30882
High 7.5
2025-04-01< 2.9.3
CVE-2025-30880
Critical 9.1
2025-04-01< 2.9.3
CVE-2025-30878
High 7.5
2025-02-13< 2.8.9
CVE-2024-13606
Medium 4.3
2025-02-04< 2.8.9
CVE-2024-13607
Medium 5.9
2024-11-09< 2.8.8
CVE-2024-51670
Critical 9.8
2024-11-01< 2.8.7
CVE-2024-43274
Critical 9.8
2024-08-13< 2.8.7
CVE-2024-7094
Critical 9.8
2024-06-09< 2.8.4
CVE-2024-31273
Critical 9.3
2024-12-21< 2.8.2
WordPress JS Help Desk – Best Help Desk & Support Plugin Plugin <= 2.8.1 is vulnerable to SQL Injection
Critical 9.1
2024-05-17< 2.7.8
CVE-2023-25444
Medium 4.6
2023-06-23< 2.7.8
CVE-2023-23679
Critical 10.0
2024-01-05< 2.7.2
CVE-2022-46839
Medium 5.4
2023-02-02< 2.7.2
CVE-2022-46842
Critical 9.1
2024-12-13< 2.7.2
CVE-2022-46838
High 8.6
2024-04-17< 2.7.2
CVE-2022-47151
Medium 5.4
2024-12-13< 2.7.2
CVE-2022-46840
High 8.8
2019-08-27< 2.0.6
CVE-2018-21002