Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Intercom plugin through 1.2.1 for WordPress leaks a Slack Access Token in source code. An attacker can obtain a lot of information about the victim's Slack (channels, members, etc.).
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
WordPress Intercom 信息泄露漏洞
Vulnerability Description
WordPress是WordPress基金会的一套使用PHP语言开发的博客平台。该平台支持在PHP和MySQL的服务器上架设个人博客网站。Intercom是使用在其中的一个在线聊天插件。 WordPress Intercom 1.2.1及之前版本中存在信息泄露漏洞。攻击者可利用该漏洞在源代码中获取Slack访问令牌,进而获取有关用户的Slack的敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A