目标达成 感谢每一位支持者 — 我们达成了 100% 目标!

目标: 1000 元 · 已筹: 1359 元

100%

CVE-2025-61319 PoC — reNgine 安全漏洞

来源
关联漏洞
标题: reNgine 安全漏洞 (CVE-2025-61319)
Description:reNgine是Yogesh Ojha个人开发者的一个用于 Web 应用程序的自动侦察框架。专注于通过引擎、侦察数据关联和组织、持续监控、由数据库和简单而直观的用户界面支持的高度可配置的流线型侦察过程。 reNgine 2.2.0及之前版本存在安全漏洞,该漏洞源于Vulnerabilities模块未清理XSS有效载荷,可能导致存储型跨站脚本攻击。
Description
Stored XSS in ReNgine <= 2.2.0 — public disclosure
介绍
# CVE-2025-61319: Stored XSS in ReNgine <= 2.2.0

**Discovered by:** Amal J
**Vendor:** ReNgine  
**CVE ID:** CVE-2025-61319  
**Status:** RESERVED (Public reference added: pending MITRE update)

---

## Description
A **Stored Cross-Site Scripting (XSS)** vulnerability exists in **ReNgine <= 2.2.0** within the Vulnerabilities module.  
When a target is scanned with a malicious payload, the payload is rendered unsanitized in the ReNgine web UI, resulting in arbitrary JavaScript execution in the administrator’s browser.

---

## Impact
- Session hijacking  
- UI compromise  
- Unauthorized actions on admin session

---

## Proof of Concept (PoC)
1. Scan a URL with payload:
?param="><svg onload=confirm('xss')>
2. After scan completion, open the Vulnerabilities tab in ReNgine and view results.  
3. The payload executes in the admin's browser context.

---

## Affected versions
- ReNgine <= 2.2.0

---

## Remediation
Sanitize and escape user-supplied input before rendering scan results.  
Implement proper HTML encoding for user-controlled output in the Vulnerabilities tab.

---

## References
- [Official ReNgine Repository](https://github.com/yogeshojha/rengine)
文件快照

登录后查看神龙缓存的 POC 文件快照

登录查看
备注
    1. 建议优先通过来源进行访问。
    2. 本地 POC 快照面向订阅用户开放;当原始来源失效或无法访问时,本地镜像作为订阅权益的一部分提供。
    3. 持续抓取、验证、维护这份 POC 档案需要不少投入,因此本地快照已纳入付费订阅。您的订阅是让这份资料能继续走下去的关键,由衷感谢。 查看订阅方案 →