The wpForo Forum plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'telegram' profile field in versions up to, and including, 3.1.6. This is due to insufficient input sanitiza…
中危 CVSS 6.4
摘要
The wpForo Forum plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'telegram' profile field in versions up to, and including, 3.1.6. This is due to insufficient input sanitization and output escaping in the profile_update action — the raw $_POST['data'] array is copied into a $custom_fields variable before validate() and sanitize() run, both of which operate only on a parallel $user reference, leaving $custom_fields unsanitized when it is persisted via update_custom_fiel…
中文摘要建设中,暂以英文摘要呈现(DR-003 v2)。
深度研判
该漏洞尚未生成深度研判报告(DR-003 v2 AI pipeline 建设中)。
数据来源
- NVD DATABASE
原始链接
- https://plugins.trac.wordpress.org/browser/wpforo/tags/3.1.5/classes/Actions.php#L711
- https://plugins.trac.wordpress.org/browser/wpforo/tags/3.1.5/classes/Forms.php#L1074
- https://plugins.trac.wordpress.org/browser/wpforo/tags/3.1.5/classes/Forms.php#L324
- https://plugins.trac.wordpress.org/browser/wpforo/tags/3.1.5/classes/Members.php#L1157
- https://plugins.trac.wordpress.org/browser/wpforo/tags/3.1.5/classes/Members.php#L906
- https://plugins.trac.wordpress.org/changeset?reponame=&old=3706608%40wpforo&new=3706608%40wpforo
- https://www.wordfence.com/threat-intel/vulnerabilities/id/15dc1661-793a-43dd-8a12-8f51da6cb304?source=cve
时间线
- nvd_ingest NVD