{"error":0,"message":null,"data":{"name":"Broken Link Checker","plugin":"broken-link-checker","link":"https:\/\/wordpress.org\/plugins\/broken-link-checker\/","latest":"1788165600","closed":0,"closed_reason":null,"closed_date":null,"vulnerability":[{"uuid":"c4df17372e6f4ff1da5c53a606c221595ea14dd460e17e8c98a10f0bf78ea08e","name":"Broken Link Checker [broken-link-checker] < 1.11.9","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.11.9","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2019-17207","name":"CVE-2019-17207","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2019-17207","description":"[en] A reflected XSS vulnerability was found in includes\/admin\/table-printer.php in the broken-link-checker (aka Broken Link Checker) plugin 1.11.8 for WordPress. This allows unauthorized users to inject client-side JavaScript into an admin-only WordPress page via the wp-admin\/tools.php?page=view-broken-links s_filter parameter in a search action.","date":"2019-10-18"},{"id":"9edebc62b0925b539e676932cf05680fa520360b","name":"Broken Link Checker <= 1.11.8 - Reflected Cross-Site Scripting","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/broken-link-checker\/broken-link-checker-1118-reflected-cross-site-scripting","description":"A reflected XSS vulnerability was found in includes\/admin\/table-printer.php in the Broken Link Checker plugin 1.11.8 for WordPress. This allows unauthorized users to inject client-side JavaScript into an admin-only WordPress page via the wp-admin\/tools.php?page=view-broken-links s_filter parameter in a search action.","date":"2019-10-14"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:R\/S:C\/C:L\/I:L\/A:N","av":"n","ac":"l","pr":"l","ui":"r","s":"c","c":"l","i":"l","a":"n","score":"5.4","severity":"m","exploitable":"2.3","impact":"2.7"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:R\/S:C\/C:L\/I:L\/A:N","score":"5.4","severity":"medium","av":"network","ac":"low","pr":"low","ui":"required","s":"changed","c":"low","i":"low","a":"none","exploitable":"2.3","impact":"2.7"},"cwe":[{"cwe":"CWE-79","name":"Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","description":"The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users."}]}},{"uuid":"06f6c6275e4676112b95dcb5c242434df8459a8ee7dd1a32ab6a0be4f576b7dd","name":"Broken Link Checker [broken-link-checker] < 1.11.9","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.11.9","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2019-16521","name":"CVE-2019-16521","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2019-16521","description":"[en] The broken-link-checker plugin through 1.11.8 for WordPress (aka Broken Link Checker) is susceptible to Reflected XSS due to improper encoding and insertion of an HTTP GET parameter into HTML. The filter function on the page listing all detected broken links can be exploited by providing an XSS payload in the s_filter GET parameter in a filter_id=search request. NOTE: this is an end-of-life product.","date":"2019-10-16"},{"id":"1842e330-3148-4d4b-af8c-6330515ef680","name":"Broken Link Checker &lt;= 1.11.8 - Authenticated Cross-Site Scripting (XSS)","link":"https:\/\/wpscan.com\/vulnerability\/1842e330-3148-4d4b-af8c-6330515ef680","description":"The Broken Link Checker WordPress plugin was affected by an Authenticated Cross-Site Scripting (XSS) security vulnerability.","date":null},{"id":"df50aaf45e860d2cbf8926fb9c15ccd8f2f1a78d","name":"Broken Link Checker <= 1.11.8 - Reflected Cross-Site Scripting","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/broken-link-checker\/broken-link-checker-1118-reflected-cross-site-scripting-2","description":"The Broken Link Checker plugin through 1.11.8 for WordPress is susceptible to Reflected XSS due to improper encoding and insertion of an HTTP GET parameter into HTML. The filter function on the page listing all detected broken links can be exploited by providing an XSS payload in the s_filter GET parameter in a filter_id=search request. NOTE: this is an end-of-life product.","date":"2019-10-15"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:R\/S:C\/C:L\/I:L\/A:N","av":"n","ac":"l","pr":"n","ui":"r","s":"c","c":"l","i":"l","a":"n","score":"6.1","severity":"m","exploitable":"2.8","impact":"2.7"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:R\/S:C\/C:L\/I:L\/A:N","score":"6.1","severity":"medium","av":"network","ac":"low","pr":"none","ui":"required","s":"changed","c":"low","i":"low","a":"none","exploitable":"2.8","impact":"2.7"},"cwe":[{"cwe":"CWE-79","name":"Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","description":"The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users."}]}},{"uuid":"307c5258a3c5fa101369d14b237ff23561607a67572b879f8c0c75ef6d6769a3","name":"Broken Link Checker [broken-link-checker] < 1.10.9","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.10.9","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2015-5057","name":"CVE-2015-5057","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2015-5057","description":"[en] Cross-site scripting (XSS) vulnerability exists in the Wordpress admin panel when the Broken Link Checker plugin before 1.10.9 is installed.","date":"2017-08-18"},{"id":"a9b29997-69b8-418c-8884-5fe2977dde97","name":"Broken Link Checker &lt;= 1.10.8 - Unauthenticated Stored XSS","link":"https:\/\/wpscan.com\/vulnerability\/a9b29997-69b8-418c-8884-5fe2977dde97","description":"Persistent Cross-Site Scripting (XSS) in wordpress-admin-panel enabled by not proper sanitised HTTP headers.","date":null},{"id":"e12d099b258bad1ad50f5e5cc913ab951505496e","name":"Broken Link Checker <= 1.10.8 - Cross-Site Scripting","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/broken-link-checker\/broken-link-checker-1108-cross-site-scripting","description":"Cross-site scripting (XSS) vulnerability exists in the Wordpress admin panel when the Broken Link Checker plugin before 1.10.9 is installed.","date":"2015-06-29"}],"impact":{"cvss":{"version":"3.0","vector":"CVSS:3.0\/AV:N\/AC:L\/PR:N\/UI:R\/S:C\/C:L\/I:L\/A:N","av":"n","ac":"l","pr":"n","ui":"r","s":"c","c":"l","i":"l","a":"n","score":"6.1","severity":"m","exploitable":"2.8","impact":"2.7"},"cvss3":{"version":"3.0","vector":"CVSS:3.0\/AV:N\/AC:L\/PR:N\/UI:R\/S:C\/C:L\/I:L\/A:N","score":"6.1","severity":"medium","av":"network","ac":"low","pr":"none","ui":"required","s":"changed","c":"low","i":"low","a":"none","exploitable":"2.8","impact":"2.7"},"cwe":[{"cwe":"CWE-79","name":"Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","description":"The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users."}]}},{"uuid":"c92cdbef6f6b3cfa2985b9c10771d03b93fac286694f8f119ec00388e534602a","name":"Broken Link Checker [broken-link-checker] < 1.9.2","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.9.2","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"269c6a3dd642ed885193acef8499cda6fcb723b6","name":"WordPress Broken Link Checker Plugin <= 1.9.1 - Cross Site Scripting","link":"https:\/\/patchstack.com\/database\/vulnerability\/broken-link-checker-\/wordpress-broken-link-checker-plugin-1-9-1-cross-site-scripting","description":"This plugin is prone to a cross site scripting vulnerability.\nUpdate the plugin.","date":"2014-08-01"}],"impact":[]},{"uuid":"4bcb8639a124ccdf242d5ac61cc24f893a4c99b050dc9cb1d75a55ac35e7ef78","name":"Broken Link Checker [broken-link-checker] < 1.10.2","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.10.2","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"29c280be10fa3afc49ca245f6d7010c82563f093","name":"WordPress Broken Link Checker Plugin <= 1.10.1 - Stored XSS","link":"https:\/\/patchstack.com\/database\/vulnerability\/broken-link-checker-\/wordpress-broken-link-checker-plugin-1-10-1-stored-xss","description":"Because of this vulnerability, the attackers can inject arbitrary JavaScript or HTML code.\nUpdate the plugin.","date":"2014-12-04"}],"impact":[]},{"uuid":"fa705e4e6c6381c78059f337bf8dd161a2d6521dea47832603d66f732c54fbf6","name":"Broken Link Checker [broken-link-checker] < 1.10.6","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.10.6","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"eb4b5f39bc0654894465fb0d2d89c896ec2af6aa","name":"WordPress Broken Link Checker  Plugin <= 1.10.5 - Multiple Vulnerabilities","link":"https:\/\/patchstack.com\/database\/vulnerability\/broken-link-checker-\/wordpress-broken-link-checker-plugin-1-10-5-multiple-vulnerabilities","description":"This plugin is prone to a cross site scripting and cross site request forgery vulnerability.\nUpdate the plugin.","date":"2015-04-20"}],"impact":[]},{"uuid":"2adbfe6640eca72ffdc1d3546f5c2acfbca37be7f430f56f9a55c7802c9b17a4","name":"Broken Link Checker [broken-link-checker] < 1.11.17","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.11.17","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2022-2438","name":"CVE-2022-2438","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2022-2438","description":"[en] The Broken Link Checker plugin for WordPress is vulnerable to deserialization of untrusted input via the '$log_file' value in versions up to, and including 1.11.16. This makes it possible for authenticated attackers with administrative privileges and above to call files using a PHAR wrapper that will deserialize the data and call arbitrary PHP Objects that can be used to perform a variety of malicious actions granted a POP chain is also present. It also requires that the attacker is successful in uploading a file with the serialized payload.","date":"2022-09-06"},{"id":"41282954b22509e89a71d747c6822e34bccb27c5","name":"WordPress Broken Link Checker Plugin <= 1.11.16 - Authenticated PHAR Deserialization vulnerability","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/broken-link-checker\/vulnerability\/wordpress-broken-link-checker-plugin-1-11-16-authenticated-phar-deserialization-vulnerability","description":"Authenticated PHAR Deserialization vulnerability discovered by Rasoul Jahanshahi in Broken Link Checker (versions <= 1.11.16)\nUpdate the WordPress Broken Link Checker plugin to the latest available version (at least 1.11.17).","date":"2022-08-16"},{"id":"4d7db1d327f4c80b0845f0707e340827908d2708","name":"Broken Link Checker <= 1.11.16 - Authenticated (Admin+) PHAR Deserialization","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/broken-link-checker\/broken-link-checker-11116-authenticated-admin-phar-deserialization","description":"The Broken Link Checker plugin for WordPress is vulnerable to deserialization of untrusted input via the '$log_file' value in versions up to, and including 1.11.16. This makes it possible for authenticated attackers with administrative privileges and above to call files using a PHAR wrapper that will deserialize the data and call arbitrary PHP Objects that can be used to perform a variety of malicious actions granted a POP chain is also present. It also requires that the attacker is successful in uploading a file with the serialized payload.","date":"2022-07-18"},{"id":"ecfc0221-92c0-49a6-88a3-f1379303bb56","name":"Broken Link Checker &lt; 1.11.17 - Admin+ PHAR Deserialization","link":"https:\/\/wpscan.com\/vulnerability\/ecfc0221-92c0-49a6-88a3-f1379303bb56","description":"The plugin does not validate a parameter, which could allow high privilege users such as admin to perform PHAR deserialisation when a suitable gadget chain is also present","date":null}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:H\/UI:N\/S:U\/C:H\/I:H\/A:H","av":"n","ac":"l","pr":"h","ui":"n","s":"u","c":"h","i":"h","a":"h","score":"7.2","severity":"h","exploitable":"1.2","impact":"5.9"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:H\/UI:N\/S:U\/C:H\/I:H\/A:H","score":"7.2","severity":"high","av":"network","ac":"low","pr":"high","ui":"none","s":"unchanged","c":"high","i":"high","a":"high","exploitable":"1.2","impact":"5.9"},"cwe":[{"cwe":"CWE-502","name":"Deserialization of Untrusted Data","description":"The product deserializes untrusted data without sufficiently ensuring that the resulting data will be valid."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"total","kev":false,"kev_date":null}}},{"uuid":"282da398b7d79340e88b37abda5ce3ca9099b4a5eb3b1fe5c2e9e415131e7664","name":"Broken Link Checker [broken-link-checker] < 1.10.6","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.10.6","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"2881a726-e194-42d6-b39f-912ad9993014","name":"Broken Link Checker &lt;= 1.10.5 - CSRF\/XSS","link":"https:\/\/wpscan.com\/vulnerability\/2881a726-e194-42d6-b39f-912ad9993014","description":"The Broken Link Checker WordPress plugin was affected by a CSRF\/XSS security vulnerability.","date":null}],"impact":[]},{"uuid":"129203baaa4532176cac0b3372111f78cb47bb3d184a0f09fe5458bb28e2430c","name":"Broken Link Checker [broken-link-checker] < 1.10.3","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.10.3","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"b81639a2-c281-4d9f-a084-f845ab85d225","name":"Broken Link Checker &lt;= 1.10.2 - Stored XSS","link":"https:\/\/wpscan.com\/vulnerability\/b81639a2-c281-4d9f-a084-f845ab85d225","description":"Broken Link Checker is vulnerable to stored XSS (again). The plugin don&rsquo;t check the links on their validity. Very bad: JavaScript code is a valid link. Example: &lt;a href=&quot;javascript:alert(1)&quot;&gt;Link&lt;\/a&gt;.\r\nMalicious JavaScript can be injected by any post author.\r\n\r\nScreenshots: http:\/\/imgur.com\/mTEobu7 \/ http:\/\/imgur.com\/3z8GmL0 \/ http:\/\/imgur.com\/KLSTP3S","date":null}],"impact":[]},{"uuid":"dc525fed1ec60a2c0c369ac71eb073a2b9c4eafffd2c168c53e93acef1fdc853","name":"Broken Link Checker [broken-link-checker] < 1.10.2","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.10.2","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"99258440-d693-403c-b4d6-0cae821062d9","name":"wpscan.com","link":"https:\/\/wpscan.com\/vulnerability\/99258440-d693-403c-b4d6-0cae821062d9","description":null,"date":null}],"impact":[]},{"uuid":"c5dc45f89fabbe7892c5509ca2adddbcfeb9ce81ac50f3c514af9bf2fdb5b52f","name":"Broken Link Checker [broken-link-checker] < 1.9.2","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.9.2","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"eda10d2a-1136-4f3e-961c-1790d612d092","name":"wpscan.com","link":"https:\/\/wpscan.com\/vulnerability\/eda10d2a-1136-4f3e-961c-1790d612d092","description":null,"date":null}],"impact":[]},{"uuid":"85fb0026737a14b52eb48c86cf6f2ce5041f53eae1eb344ee15ee77f9555c71a","name":"Broken Link Checker [broken-link-checker] < 1.9.2","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.9.2","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"e082205d-f1fe-4654-8593-4ef4344234ae","name":"wpscan.com","link":"https:\/\/wpscan.com\/vulnerability\/e082205d-f1fe-4654-8593-4ef4344234ae","description":null,"date":null}],"impact":[]},{"uuid":"f61b75009c05cb176c10187450d6b0254d95cb4b856a5bff9acf6e3349412aeb","name":"Broken Link Checker [broken-link-checker] < 1.11.20","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.11.20","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2022-3922","name":"CVE-2022-3922","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2022-3922","description":"[en] The Broken Link Checker WordPress plugin before 1.11.20 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)","date":"2022-12-28"},{"id":"55804d54c5349aa2298797f19bfa3fad7c8a2a29","name":"Broken Link Checker <= 1.11.19 - Authenticated (Administrator+) Stored Cross-Site Scripting","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/broken-link-checker\/broken-link-checker-11119-authenticated-administrator-stored-cross-site-scripting","description":"The Broken Link Checker plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the \u2018youtube_api_key\u2019 parameter in versions up to, and including, 1.11.19 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with administrator-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":"2022-11-11"},{"id":"78054bd7-cdc2-4b14-9b5c-30f10e802d6b","name":"Broken Link Checker &lt; 1.11.20 - Admin+ Cross-Site Scripting","link":"https:\/\/wpscan.com\/vulnerability\/78054bd7-cdc2-4b14-9b5c-30f10e802d6b","description":"The plugin does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)","date":null}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:H\/UI:R\/S:C\/C:L\/I:L\/A:N","av":"n","ac":"l","pr":"h","ui":"r","s":"c","c":"l","i":"l","a":"n","score":"4.8","severity":"m","exploitable":"1.7","impact":"2.7"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:H\/UI:R\/S:C\/C:L\/I:L\/A:N","score":"4.8","severity":"medium","av":"network","ac":"low","pr":"high","ui":"required","s":"changed","c":"low","i":"low","a":"none","exploitable":"1.7","impact":"2.7"},"cwe":[{"cwe":"CWE-79","name":"Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","description":"The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users."}],"ssvc":{"exploitation":"poc","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"39293cc926a929a07fc9066f38a9749b0aa54ad721cd31a049b032c5b7764fd2","name":"Broken Link Checker [broken-link-checker] < 1.10.6","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.10.6","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"0323a75cca15b8cfbbeb4241b77200b7eed5e781","name":"Broken Link Checker < 1.10.6 - Reflected Cross Site Scripting","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/broken-link-checker\/broken-link-checker-1106-reflected-cross-site-scripting","description":"The Broken Link Checker plugin for WordPress is vulnerable to Cross-Site Scripting in versions up to, and including, 1.10.5 due to insufficient input sanitization and output escaping and the use of add_query_arg\/remove_query_arg. This makes it possible for attackers to inject arbitrary web scripts that execute in a victim's browser.","date":"2015-04-20"},{"id":"CVE-2015-10098","name":"CVE-2015-10098","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2015-10098","description":"[en] A vulnerability was found in Broken Link Checker Plugin up to 1.10.5 on WordPress. It has been rated as problematic. Affected by this issue is the function print_module_list\/show_warnings_section_notice\/status_text\/ui_get_action_links. The manipulation leads to cross site scripting. The attack may be launched remotely. Upgrading to version 1.10.6 is able to address this issue. The name of the patch is f30638869e281461b87548e40b517738b4350e47. It is recommended to upgrade the affected component. The identifier of this vulnerability is VDB-225152.\n\n[de] Eine problematische Schwachstelle wurde in Broken Link Checker Plugin bis 1.10.5 f\u00fcr WordPress ausgemacht. Dies betrifft die Funktion print_module_list\/show_warnings_section_notice\/status_text\/ui_get_action_links. Durch Manipulation mit unbekannten Daten kann eine cross site scripting-Schwachstelle ausgenutzt werden. Der Angriff kann \u00fcber das Netzwerk passieren. Ein Aktualisieren auf die Version 1.10.6 vermag dieses Problem zu l\u00f6sen. Der Patch wird als f30638869e281461b87548e40b517738b4350e47 bezeichnet. Als bestm\u00f6gliche Massnahme wird das Einspielen eines Upgrades empfohlen.","date":"2023-04-08"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:R\/S:C\/C:L\/I:L\/A:N","av":"n","ac":"l","pr":"n","ui":"r","s":"c","c":"l","i":"l","a":"n","score":"6.1","severity":"m","exploitable":"2.8","impact":"2.7"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:R\/S:C\/C:L\/I:L\/A:N","score":"6.1","severity":"medium","av":"network","ac":"low","pr":"none","ui":"required","s":"changed","c":"low","i":"low","a":"none","exploitable":"2.8","impact":"2.7"},"cwe":[{"cwe":"CWE-79","name":"Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","description":"The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users."}]}},{"uuid":"946123445fc255ccf05f5a7990b63c770184de831a8dd84368fcdbd3ed13b57b","name":"Broken Link Checker [broken-link-checker] < 1.10.2","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.10.2","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"2609bfbd61d59df0ebd2327d3e5f46ddbccafbbc","name":"Broken Link Checker < 1.10.2 - Authenticated (Admin+) Stored Cross-Site Scripting","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/broken-link-checker\/broken-link-checker-1102-authenticated-stored-cross-site-scripting","description":"The Broken Link Checker plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the \u2018exclusion_list\u2019 parameter in versions up to, and including, 1.10.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":"2014-12-05"},{"id":"CVE-2014-125105","name":"CVE-2014-125105","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2014-125105","description":"[en] A vulnerability was found in Broken Link Checker Plugin up to 1.10.1 on WordPress. It has been declared as problematic. Affected by this vulnerability is the function options_page of the file core\/core.php of the component Settings Page. The manipulation of the argument exclusion_list\/blc_custom_fields leads to cross site scripting. The attack can be launched remotely. Upgrading to version 1.10.2 is able to address this issue. The patch is named 90615fe9b0b6f9e6fb254d503c302e53a202e561. It is recommended to upgrade the affected component. The associated identifier of this vulnerability is VDB-230659.\n\n[de] In Broken Link Checker Plugin bis 1.10.1 f\u00fcr WordPress wurde eine problematische Schwachstelle ausgemacht. Hierbei betrifft es die Funktion options_page der Datei core\/core.php der Komponente Settings Page. Dank der Manipulation des Arguments exclusion_list\/blc_custom_fields mit unbekannten Daten kann eine cross site scripting-Schwachstelle ausgenutzt werden. Umgesetzt werden kann der Angriff \u00fcber das Netzwerk. Ein Aktualisieren auf die Version 1.10.2 vermag dieses Problem zu l\u00f6sen. Der Patch wird als 90615fe9b0b6f9e6fb254d503c302e53a202e561 bezeichnet. Als bestm\u00f6gliche Massnahme wird das Einspielen eines Upgrades empfohlen.","date":"2023-06-05"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:R\/S:C\/C:L\/I:L\/A:N","av":"n","ac":"l","pr":"n","ui":"r","s":"c","c":"l","i":"l","a":"n","score":"6.1","severity":"m","exploitable":"2.8","impact":"2.7"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:R\/S:C\/C:L\/I:L\/A:N","score":"6.1","severity":"medium","av":"network","ac":"low","pr":"none","ui":"required","s":"changed","c":"low","i":"low","a":"none","exploitable":"2.8","impact":"2.7"},"cwe":[{"cwe":"CWE-79","name":"Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","description":"The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users."}]}},{"uuid":"5d773134316eaefac102b7196c336bc94dbb1340e79ad1b8b63e6e94590c6d28","name":"Broken Link Checker [broken-link-checker] < 1.10.6","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.10.6","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"e1e554a138178ac3e41d4bae9b3067671d3559a1","name":"WordPress  Broken Link Checker Plugin  <= 1.10.5  is vulnerable to Multiple Vulnerabilities","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/broken-link-checker\/vulnerability\/wordpress-broken-link-checker-plugin-1-10-5-multiple-vulnerabilities","description":"Update the plugin.\nAn unknown person discovered and reported this Multiple Vulnerabilities vulnerability in WordPress Broken Link Checker Plugin. Multiple vulnerabilities were found. Due to the large number of vulnerabilities, this has been grouped in this category. This vulnerability has been fixed in version 1.10.6.","date":"2023-04-20"}],"impact":[]},{"uuid":"f9d0933eb1d9e18b9ff846e5c17d542fa75f3ddfaa3afd7d87020d159f793527","name":"Broken Link Checker [broken-link-checker] < 1.9.2","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.9.2","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"29aa5d2b544923190abb842579fc1ffce9ae9694","name":"WordPress  Broken Link Checker Plugin  <= 1.9.1 is vulnerable to Cross Site Scripting (XSS)","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/broken-link-checker\/vulnerability\/wordpress-broken-link-checker-plugin-1-9-1-cross-site-scripting","description":"Update the plugin.\nAn unknown person discovered and reported this Cross Site Scripting (XSS) vulnerability in WordPress Broken Link Checker Plugin. This could allow a malicious actor to inject malicious scripts, such as redirects, advertisements, and other HTML payloads into your website which will be executed when guests visit your site.  This vulnerability has been fixed in version 1.9.2.","date":"2023-08-01"}],"impact":[]},{"uuid":"7d8baa57599202d1a0f3363cc74b60adb1d22185c4c3a17324c90be2163dd827","name":"Broken Link Checker [broken-link-checker] < 1.10.2","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.10.2","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"211b0fe5de0d368eeccce1868ac26e143e655b9c","name":"WordPress  Broken Link Checker Plugin  <= 1.10.1 is vulnerable to Cross Site Scripting (XSS)","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/broken-link-checker\/vulnerability\/wordpress-broken-link-checker-plugin-1-10-1-stored-xss","description":"Update the plugin.\nAn unknown person discovered and reported this Cross Site Scripting (XSS) vulnerability in WordPress Broken Link Checker Plugin. This could allow a malicious actor to inject malicious scripts, such as redirects, advertisements, and other HTML payloads into your website which will be executed when guests visit your site.  This vulnerability has been fixed in version 1.10.2.","date":"2023-12-04"}],"impact":[]},{"uuid":"1df5bbde712822cd1700c6124cc2022fe119ae77f714c75682c302fb4175dfcb","name":"Broken Link Checker [broken-link-checker] < 2.2.4","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"2.2.4","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2024-25592","name":"CVE-2024-25592","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2024-25592","description":"[en] Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPMU DEV Broken Link Checker allows Stored XSS.This issue affects Broken Link Checker: from n\/a through 2.2.3.","date":"2024-03-15"},{"id":"6d456668a206066f3a182fb68c7bec1be280eaea","name":"Broken Link Checker <= 2.2.3 - Authenticated (Administrator+) Stored Cross-Site Scripting via settings","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/broken-link-checker\/broken-link-checker-223-authenticated-administrator-stored-cross-site-scripting-via-settings","description":"The Broken Link Checker plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 2.2.3 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with administrator-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. This only affects multi-site installations and installations where unfiltered_html has been disabled.","date":"2024-02-12"},{"id":"abe138ba4e2d57e0943138a2d779a4bf17e3938e","name":"WordPress  Broken Link Checker Plugin  <= 2.2.3 is vulnerable to Cross Site Scripting (XSS)","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/broken-link-checker\/vulnerability\/wordpress-broken-link-checker-plugin-2-2-3-cross-site-scripting-xss-vulnerability","description":"Update the WordPress Broken Link Checker plugin to the latest available version (at least 2.2.4).\nDhabaleshwar Das discovered and reported this Cross Site Scripting (XSS) vulnerability in WordPress Broken Link Checker Plugin. This could allow a malicious actor to inject malicious scripts, such as redirects, advertisements, and other HTML payloads into your website which will be executed when guests visit your site.  This vulnerability has been fixed in version 2.2.4.\nThis vulnerability was reported to and published by Patchstack. Our users receive alerts and protections up to 48 hours in advance.\nHave additional information or questions about this entry? Get in touch.","date":null},{"id":"a837bb5a-0270-49e5-806a-ab733f0e094a","name":"Broken Link Checker &lt; 2.2.4 - Admin+ Stored Cross-Site Scripting","link":"https:\/\/wpscan.com\/vulnerability\/a837bb5a-0270-49e5-806a-ab733f0e094a","description":"The plugin does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Cross-Site Scripting attacks even when unfiltered_html is disallowed","date":null}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:H\/UI:R\/S:C\/C:L\/I:L\/A:L","av":"n","ac":"l","pr":"h","ui":"r","s":"c","c":"l","i":"l","a":"l","score":"5.9","severity":"m","exploitable":"1.7","impact":"2.7"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:H\/UI:R\/S:C\/C:L\/I:L\/A:L","score":"5.9","severity":"medium","av":"network","ac":"low","pr":"high","ui":"required","s":"changed","c":"low","i":"low","a":"low","exploitable":"1.7","impact":"2.7"},"cwe":[{"cwe":"CWE-79","name":"Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","description":"The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"f79ee1f07c808a7fd03de92ebbae349620194e165fc965b0961e8fe132979f4b","name":"Broken Link Checker [broken-link-checker] < 2.4.1","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"2.4.1","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2024-8981","name":"CVE-2024-8981","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2024-8981","description":"[en] The Broken Link Checker plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg in \/app\/admin-notices\/features\/class-view.php without appropriate escaping on the URL in all versions up to, and including, 2.4.0. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.","date":"2024-10-01"},{"id":"d5cab750a86935b7ce810da0654c7832b2f76862","name":"Broken Link Checker <= 2.4.0 - Reflected Cross-Site Scripting","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/broken-link-checker\/broken-link-checker-240-reflected-cross-site-scripting","description":"The Broken Link Checker plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg in \/app\/admin-notices\/features\/class-view.php without appropriate escaping on the URL in all versions up to, and including, 2.4.0. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.","date":"2024-09-30"},{"id":"68e2c2184d181e30075ae9d88a9e1c4824b2e6d4","name":"WordPress Broken Link Checker Plugin <= 2.4.0 is vulnerable to Cross Site Scripting (XSS)","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/broken-link-checker\/vulnerability\/wordpress-broken-link-checker-plugin-2-4-0-reflected-cross-site-scripting-vulnerability","description":"<p>WordPress Broken Link Checker Plugin <= 2.4.0 is vulnerable to Cross Site Scripting (XSS)<\/p><p>Software: Broken Link Checker<\/p><p>Link: https:\/\/wordpress.org\/plugins\/broken-link-checker\/#developers<\/p><p>Affected Version <= 2.4.0<\/p><p>Fixed in version 2.4.1 <\/p>","date":"2024-10-01"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:R\/S:C\/C:L\/I:L\/A:L","av":"n","ac":"l","pr":"n","ui":"r","s":"c","c":"l","i":"l","a":"l","score":"7.1","severity":"h","exploitable":"2.8","impact":"3.7"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:R\/S:C\/C:L\/I:L\/A:L","score":"7.1","severity":"high","av":"network","ac":"low","pr":"none","ui":"required","s":"changed","c":"low","i":"low","a":"low","exploitable":"2.8","impact":"3.7"},"cwe":[{"cwe":"CWE-80","name":"Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS)","description":"The product receives input from an upstream component, but it does not neutralize or incorrectly neutralizes special characters such as \"<\", \">\", and \"&\" that could be interpreted as web-scripting elements when they are sent to a downstream component that processes web pages."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"8895636a32197fc98d74b0c2ba3f0bad47862b939d1027db57a0dcdbe4598592","name":"Broken Link Checker [broken-link-checker] < 2.4.2","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"2.4.2","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2024-10903","name":"CVE-2024-10903","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2024-10903","description":"[en] The Broken Link Checker WordPress plugin before 2.4.2 does not validate a the link URLs before making a request to them, which could allow admin users to perform SSRF attack, for example on a multisite installation.","date":"2024-12-26"},{"id":"2e13c6da413b3a8e3a47dc20e9c7158254a951d7","name":"WordPress Broken Link Checker Plugin < 2.4.2 is vulnerable to Server Side Request Forgery (SSRF)","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/broken-link-checker\/vulnerability\/wordpress-broken-link-checker-plugin-2-4-2-admin-ssrf-vulnerability","description":"<p>WordPress Broken Link Checker Plugin < 2.4.2 is vulnerable to Server Side Request Forgery (SSRF)<\/p><p>Software: Broken Link Checker<\/p><p>Fixed in version 2.4.2 <\/p><p>Affected Version < 2.4.2<\/p><p>CVE: CVE-2024-10903<\/p>","date":"2024-12-26"},{"id":"9cd0594c9f5f04221912cfae73a283cc2c5ea362","name":"Broken Link Checker <= 2.4.1 - Authenticated (Admin+) Server-Side Request Forgery","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/broken-link-checker\/broken-link-checker-241-authenticated-admin-server-side-request-forgery","description":"The Broken Link Checker plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 2.4.1. This makes it possible for authenticated attackers, with Administrator-level access and above, to make web requests to arbitrary locations originating from the web application which can be used to query and modify information from internal services.","date":"2024-12-05"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:H\/UI:N\/S:U\/C:L\/I:L\/A:L","av":"n","ac":"l","pr":"h","ui":"n","s":"u","c":"l","i":"l","a":"l","score":"4.7","severity":"m","exploitable":"1.2","impact":"3.4"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:H\/UI:N\/S:U\/C:L\/I:L\/A:L","score":"4.7","severity":"medium","av":"network","ac":"low","pr":"high","ui":"none","s":"unchanged","c":"low","i":"low","a":"low","exploitable":"1.2","impact":"3.4"},"cwe":[{"cwe":"CWE-918","name":"Server-Side Request Forgery (SSRF)","description":"The web server receives a URL or similar request from an upstream component and retrieves the contents of this URL, but it does not sufficiently ensure that the request is being sent to the expected destination."}],"ssvc":{"exploitation":"poc","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"fdf687caa4a622d825434a2c447fc875b3175c7ecdb944c3cb18e19bd9445d58","name":"Broken Link Checker [broken-link-checker] < 2.4.5","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"2.4.5","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2025-4047","name":"Broken Link Checker <= 2.4.4 - Missing Autorization to Authenticated (Subscriber+) Plugin Status Dashboard View","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2025-4047","description":"The Broken Link Checker plugin for WordPress is vulnerable to unauthorized data access due to a missing capability check on the ajax_full_status and ajax_dashboard_status functions in all versions up to, and including, 2.4.4. This makes it possible for authenticated attackers, with Subscriber-level access and above, to view the plugin's status.","date":"0000-00-00"},{"id":"38f33bf151d610073c5f6acb5e83742429dfa7df","name":"Broken Link Checker <= 2.4.4 - Missing Autorization to Authenticated (Subscriber+) Plugin Status Dashboard View","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/broken-link-checker\/broken-link-checker-244-missing-autorization-to-authenticated-subscriber-plugin-status-dashboard-view","description":"The Broken Link Checker plugin for WordPress is vulnerable to unauthorized data access due to a missing capability check on the ajax_full_status and ajax_dashboard_status functions in all versions up to, and including, 2.4.4. This makes it possible for authenticated attackers, with Subscriber-level access and above, to view the plugin's status.","date":"2025-06-02"},{"id":"EUVD-2025-16741","name":"EUVD-2025-16741","link":"https:\/\/euvd.enisa.europa.eu\/enisa\/EUVD-2025-16741","description":"The Broken Link Checker plugin for WordPress is vulnerable to unauthorized data access due to a missing capability check on the ajax_full_status and ajax_dashboard_status functions in all versions up to, and including, 2.4.4. This makes it possible for authenticated attackers, with Subscriber-level access and above, to view the plugin's status.","date":"2025-06-03"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:U\/C:L\/I:N\/A:N","av":"n","ac":"l","pr":"l","ui":"n","s":"u","c":"l","i":"n","a":"n","score":"4.3","severity":"m","exploitable":"2.8","impact":"1.4"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:U\/C:L\/I:N\/A:N","score":"4.3","severity":"medium","av":"network","ac":"low","pr":"low","ui":"none","s":"unchanged","c":"low","i":"none","a":"none","exploitable":"2.8","impact":"1.4"},"cwe":[{"cwe":"CWE-862","name":"Missing Authorization","description":"The product does not perform an authorization check when an actor attempts to access a resource or perform an action."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"ffa57447a9a8f7370b85043e17454c3b99a9f25bbe29cdd02fdab7c1fe4a3dfb","name":"Broken Link Checker [broken-link-checker] < 2.4.8","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"2.4.8","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2026-39466","name":"CVE-2026-39466","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-39466","description":"[en] Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WPMU DEV - Your All-in-One WordPress Platform Broken Link Checker broken-link-checker allows Blind SQL Injection.This issue affects Broken Link Checker: from n\/a through <= 2.4.7.","date":"2026-04-08"},{"id":"351feed24a6a554f7d92bca860ac3718dec7bffc","name":"Broken Link Checker <= 2.4.7 - Authenticated (Editor+) SQL Injection","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/broken-link-checker\/broken-link-checker-247-authenticated-editor-sql-injection","description":"The Broken Link Checker plugin for WordPress is vulnerable to SQL Injection in versions up to, and including, 2.4.7 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with editor-level access and above, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.","date":"2026-03-26"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:H\/UI:N\/S:C\/C:H\/I:N\/A:L","av":"n","ac":"l","pr":"h","ui":"n","s":"c","c":"h","i":"n","a":"l","score":"7.6","severity":"h","exploitable":"0.0","impact":"0.0"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:H\/UI:N\/S:C\/C:H\/I:N\/A:L","score":"7.6","severity":"high","av":"network","ac":"low","pr":"high","ui":"none","s":"changed","c":"high","i":"none","a":"low","exploitable":"0.0","impact":"0.0"},"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"e0a1714dc5c4ca900edcde8f3270c0cb98ec870794a1fc03e99d555234992f64","name":"Broken Link Checker [broken-link-checker] < 2.4.12","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"2.4.12","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2026-18937","name":"CVE-2026-18937","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-18937","description":"[en] The Broken Link Checker WordPress plugin before 2.4.12 does not limit which query variables it accepts from user input on sites using plain permalinks, allowing unauthenticated users to overwrite arbitrary PHP global variables, and to execute arbitrary code on the server when a classic (non-block)  is active.","date":"2026-08-19"},{"id":"2fb7c4a90244e91927308fd6005a89c5c258aa1f","name":"Broken Link Checker &lt; 2.4.12 - Unauthenticated Remote Code Execution","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/broken-link-checker\/broken-link-checker-2412-unauthenticated-remote-code-execution","description":"The Broken Link Checker plugin for WordPress is vulnerable to Remote Code Execution in all versions up to 2.4.12. This is due to insufficient validation of user supplied input before it is executed. This makes it possible for unauthenticated attackers to execute arbitrary code on the server.","date":null}],"impact":{"cwe":[{"cwe":"CWE-94","name":"Improper Control of Generation of Code ('Code Injection')","description":"The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"total","kev":false,"kev_date":null}}},{"uuid":"332ed143eb3f857ef2143797137f0476a7bf1f65ba65fc38df3e06ead2bb5532","name":"Broken Link Checker [broken-link-checker] < 2.4.13.1","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"2.4.13.1","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2026-75528","name":"CVE-2026-75528","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-75528","description":"[en] The Broken Link Checker plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Comment Author URL \/ Link Log in all versions up to, and including, 2.4.13 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. Exploitation requires an administrator to perform the plugin's standard dismiss-and-recheck workflow on a link submitted by the attacker via the WordPress comment author URL field, after which the attacker's HTTP server issues a redirect to a URL containing an HTML\/JavaScript payload that is stored verbatim in the link log.","date":"2026-09-02"},{"id":"3e15c17d2090a966dc5d2045eb2364abe58d0b68","name":"Broken Link Checker &lt;= 2.4.13 - Unauthenticated Stored Cross-Site Scripting via Comment Author URL \/ Link Log","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/broken-link-checker\/broken-link-checker-2413-unauthenticated-stored-cross-site-scripting-via-comment-author-url-link-log","description":"The Broken Link Checker plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Comment Author URL \/ Link Log in all versions up to, and including, 2.4.13 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. Exploitation requires an administrator to perform the plugin&#039;s standard dismiss-and-recheck workflow on a link submitted by the attacker via the WordPress comment author URL field, after which the attacker&#039;s HTTP server issues a redirect to a URL containing an HTML\/JavaScript payload that is stored verbatim in the link log.","date":null}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:N\/S:C\/C:L\/I:L\/A:N","av":"n","ac":"l","pr":"n","ui":"n","s":"c","c":"l","i":"l","a":"n","score":"7.2","severity":"h","exploitable":"0.0","impact":"0.0"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:N\/S:C\/C:L\/I:L\/A:N","score":"7.2","severity":"high","av":"network","ac":"low","pr":"none","ui":"none","s":"changed","c":"low","i":"low","a":"none","exploitable":"0.0","impact":"0.0"},"cwe":[{"cwe":"CWE-79","name":"Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","description":"The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"b256fda5edfcc701ad2cd699042241692d17d69b1155cffde518e5a23662e8c0","name":"Broken Link Checker [broken-link-checker] < 2.4.14.1","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"2.4.14.1","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2026-84772","name":"CVE-2026-84772","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-84772","description":"[en] Editor Server Side Request Forgery (SSRF) in Broken Link Checker <= 2.4.14 versions.","date":"2026-09-02"},{"id":"90017ff99b123e55c1b4f24220b874c33d0e52ff","name":"Broken Link Checker <= 2.4.14 - Authenticated (Editor+) Server-Side Request Forgery","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/broken-link-checker\/broken-link-checker-2414-authenticated-editor-server-side-request-forgery","description":"The Broken Link Checker plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 2.4.14. This makes it possible for authenticated attackers, with editor-level access and above, to make web requests to arbitrary locations originating from the web application which can be used to query and modify information from internal services.","date":"2026-09-01"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:H\/UI:N\/S:C\/C:L\/I:L\/A:N","av":"n","ac":"l","pr":"h","ui":"n","s":"c","c":"l","i":"l","a":"n","score":"5.5","severity":"m","exploitable":"0.0","impact":"0.0"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:H\/UI:N\/S:C\/C:L\/I:L\/A:N","score":"5.5","severity":"medium","av":"network","ac":"low","pr":"high","ui":"none","s":"changed","c":"low","i":"low","a":"none","exploitable":"0.0","impact":"0.0"},"cwe":[{"cwe":"CWE-918","name":"Server-Side Request Forgery (SSRF)","description":"The web server receives a URL or similar request from an upstream component and retrieves the contents of this URL, but it does not sufficiently ensure that the request is being sent to the expected destination."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}}]},"updated":"1789030251"}