Cotonti 版本 1.0.0 及之前版本在 message.php 中存在一个反射型跨站脚本(XSS)漏洞。该漏洞是由于 lng 参数在输出到确认对话框前未进行适当的转义处理所致。未经身份验证的攻击者可以构造包含脚本有效载荷的恶意链接,利用 lng 参数在受害者浏览器会话中执行任意 JavaScript 代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-100523 | 6.1 MEDIUM | Cotonti through 1.0.0 Open Redirect via message.php redirect parameter |
| CVE-2026-100521 | 6.1 MEDIUM | Cotonti through 1.0.0 Reflected XSS via search highlight parameter |
| CVE-2026-100524 | 5.4 MEDIUM | Cotonti through 1.0.0 Cross-Site Request Forgery via Extensions Manager |
No comments yet