CyberRota Analysis
AI-GeneratedThe Lead Generation Contact Widget and AI Chatbot in SiteLeads versions up to 1.2.0 are vulnerable to unauthenticated sensitive data exposure, potentially allowing attackers to access confidential user information. This high-severity vulnerability poses significant risks to organizations utilizing these tools for customer engagement. Businesses leveraging SiteLeads should prioritize immediate remediation to protect sensitive data and maintain user trust.
CVE
CVE-2026-78268
Severity
HIGH
CVSS
7.5
EPSS
0.25%
Original NVD Description
Unauthenticated Sensitive Data Exposure in Lead Generation Contact Widget & AI Chatbot: Chat Button, Phone Call, Telegram, Email – SiteLeads <= 1.2.0 versions.