Cotonti 1.0.0 及更早版本在联系插件的提交处理程序中未正确验证反 CSRF 令牌,从而允许攻击者伪造消息。攻击者可以从攻击者控制的页面自动提交联系表单,将伪造的消息(名义上来自已认证的用户)发送到管理员的收件箱。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-93868 | 8.1 HIGH | Cotonti through 1.0.0 Predictable Password Recovery Token via Weak PRNG |
| CVE-2026-93872 | 7.5 HIGH | Cotonti 1.0.0 PHP Object Injection via Comments Plugin Edit Action cb Parameter |
| CVE-2026-93869 | 6.1 MEDIUM | Cotonti through 1.0.0 Open Redirect via Unanchored cot_url_check() Regex |
| CVE-2026-93871 | 5.4 MEDIUM | Cotonti through 1.0.0 Stored Open Redirect via Page redir: Prefix |
| CVE-2026-93870 | 4.3 MEDIUM | Cotonti through 1.0.0 Cross-Site Request Forgery in the Ratings Plugin AJAX Handler |
No comments yet