WordPress 的 Relevanssi Premium 插件在 2.31.4 及更早版本中存在存储型跨站脚本(Stored Cross-Site Scripting, XSS)漏洞。该漏洞源于插件对 “_rt” 参数的输入清理和输出转义处理不足。攻击者无需身份验证即可在网页中注入任意 Web 脚本,当其他用户访问包含这些脚本的页面时,脚本将被执行。 要利用此漏洞,必须在插件设置中启用点击追踪和日志记录功能。由于每次搜索结果页面都会公开暴露有效的 值,未授权用户可轻易构造恶意请求,使漏洞利用变得极为简单。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Relevanssi | Relevanssi Premium | ≤ 2.31.4 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Relevanssi | Relevanssi Premium | 0 ~ 2.31.4 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet