CRITICAL
9.3 CVE-2026-73187 Published 18 Aug 2026
Sticky Chat Widget SQL Injection Vulnerability
Worried this affects one of your servers?
Sticky Chat Widget versions up to and including 1.4.2 contain an unauthenticated SQL injection vulnerability.
The flaw affects all versions <= 1.4.2 and can be exploited without authentication.
Reference: CVE-2026-73187 on NVD
← Back to Security News