Ninja Forms 3.15.3 版本将匿名的非富文本(non-RTE)文本域(textarea)值进行存储,并在旧版提交编辑器(legacy submission editor)中渲染时未对其执行安全的 HTML 编码。攻击者可以利用这一漏洞,通过存储型脚本(stored script)突破文本域的限制。当管理员访问攻击者已知的直接提交 URL 时,该脚本将在 WordPress 管理后台域(origin)中执行,从而导致存储型跨站脚本(Stored XSS)漏洞。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| kstover | Ninja Forms – Contact Form Builder with Calculators, Quizzes, Signatures & AI Form Builder | ≤ 3.15.3 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| kstover | Ninja Forms – Contact Form Builder with Calculators, Quizzes, Signatures & AI Form Builder | 0 ~ 3.15.3 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet