NamelessMC是NamelessMC团队的一款免费、易于使用且功能强大的网站软件。适用于您的 Minecraft 服务器,其中包含大量功能。 NamelessMC 2.2.3之前版本存在安全漏洞,该漏洞源于跨站脚本漏洞,可能导致注入恶意Web脚本或HTML。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| NamelessMC | Nameless | < 2.2.4 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2025-54421 | 7.2 HIGH | NamelessMC allows Stored Cross Site Scripting (XSS) in SEO component |
| CVE-2025-54118 | 5.3 MEDIUM | NamelessMC allows sensitive information disclosure in member list component |
No comments yet