ilabs InPost PL是波兰ilabs公司的一款专为使用 WooCommerce 平台的中小企业打造的官方物流集成插件。 ilabs InPost PL 1.9.1之前版本存在权限许可和访问控制问题漏洞,该漏洞源于未验证请求是否来自合法买家,可能导致未经验证的攻击者静默重定向网站上任何待处理或处理中订单的送货地址。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-10824 | Masteriyo LMS < 2.2.1 - Unauthenticated Course Progress Disclosure and Deletion | |
| CVE-2026-5305 | Email Address Encoder (Free < 1.0.25, Premium < 0.3.12) - Unauthenticated Stored XSS |
No comments yet