<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:webfeeds="http://webfeeds.org/rss/1.0"><channel><title>Cpe:2.3:a:broken_link_checker_project:broken_link_checker:*:*:*:*:*:wordpress:*:* - CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/cpes/cpe2.3abroken_link_checker_projectbroken_link_checkerwordpress/</link><description>Trending threats, MITRE ATT&amp;CK coverage, and detection metadata. Fed continuously.</description><generator>Hugo</generator><language>en</language><managingEditor>hello@craftedsignal.io</managingEditor><webMaster>hello@craftedsignal.io</webMaster><lastBuildDate>Wed, 02 Sep 2026 09:12:31 +0000</lastBuildDate><atom:link href="https://feed.craftedsignal.io/cpes/cpe2.3abroken_link_checker_projectbroken_link_checkerwordpress/feed.xml" rel="self" type="application/rss+xml"/><image><url>https://feed.craftedsignal.io/favicon-32x32.png</url><title>CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/</link><width>32</width><height>32</height></image><webfeeds:icon>https://feed.craftedsignal.io/favicon.svg</webfeeds:icon><item><title>CVE-2026-75528 Stored XSS in Broken Link Checker WordPress Plugin</title><link>https://feed.craftedsignal.io/briefs/2026-09-broken-link-checker-xss/</link><pubDate>Wed, 02 Sep 2026 09:12:31 +0000</pubDate><author>hello@craftedsignal.io</author><guid isPermaLink="true">https://feed.craftedsignal.io/briefs/2026-09-broken-link-checker-xss/</guid><description>The Broken Link Checker WordPress plugin up to version 2.4.13 is vulnerable to Stored Cross-Site Scripting, allowing unauthenticated attackers to execute malicious scripts in the administrative session context.</description><content:encoded><![CDATA[<p>The Broken Link Checker plugin for WordPress, in versions up to and including 2.4.13, contains a security flaw resulting in Stored Cross-Site Scripting (XSS). The vulnerability stems from insufficient input sanitization and output escaping within the plugin's Comment Author URL and Link Log processing functions. An unauthenticated attacker can craft a malicious URL and submit it as a comment author link. When an administrator performs the plugin's standard &quot;dismiss-and-recheck&quot; workflow, the plugin fetches the malicious URL. The attacker's server then issues a redirect to a secondary URL containing an HTML/JavaScript payload. This payload is stored verbatim in the plugin's link log, where it executes upon being rendered in an administrative session. This vulnerability poses a significant risk to the integrity of the WordPress administrative environment.</p>
<h2 id="impact">Impact</h2>
<p>Successful exploitation of CVE-2026-75528 allows an unauthenticated attacker to execute arbitrary JavaScript in the context of an administrator's browser session. This could lead to account takeover, unauthorized administrative actions, or the injection of further malicious content into the site, impacting any WordPress installation using the vulnerable plugin version.</p>
<h2 id="recommendation">Recommendation</h2>
<p>Update the Broken Link Checker plugin to the latest version, ensuring it exceeds 2.4.13. Security operations should review administrative access logs for unusual patterns involving the &quot;dismiss-and-recheck&quot; functionality and monitor web application firewall (WAF) logs for POST requests to WordPress comment submission endpoints containing non-standard URL schemes or script-like patterns.</p>
]]></content:encoded><category domain="severity">high</category><category domain="type">advisory</category></item></channel></rss>