HackTips.

页面数据均来自于CVE官方,仅调用Api进行查询

1@1042.net

CVE编号CVE-2025-1382
发布日期2025-03-09T06:00:05.522Z
更新日期2025-03-10T14:10:06.800Z
状态PUBLISHED
受影响的供应商Unknown
受影响的产品Contact Us By Lord Linus
描述The Contact Us By Lord Linus WordPress plugin through 2.6 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which could allow attackers to make logged in admin add Stored XSS payloads via a CSRF attack.

参考链接:

Image Additional Image