wpcompress wp compress是wpcompress个人开发者的一套网站压缩优化工具。 WordPress wp compress 7.10.04之前版本存在跨站脚本漏洞,该漏洞源于未验证控制资产CDN主机的查询参数值,导致反射型跨站脚本。当访问者点击特制链接时,加载器会注入指向攻击者控制来源的脚本元素,使得攻击者能够在目标站点上执行任意JavaScript脚本。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Unknown | WP Compress | < 7.10.04 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Unknown | WP Compress | 0 ~ 7.10.04 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-12082 | Praison AI SEO < 5.0.7 - Unauthenticated Multiple Missing Authorization (Post Permalink Mo | |
| CVE-2026-9577 | Post Status Notifier Lite < 1.13.0 - Reflected XSS via mod Parameter | |
| CVE-2026-14291 | Security Ninja (Premium) < 5.290 - Two-Factor Authentication Bypass via secnin_skip_2fa |
No comments yet