PoC Index

CVE-2023-6389

MEDIUM 6.1EPSS 26.8%

The WordPress Toolbar WordPress plugin through 2.2.6 redirects to any URL via the "wptbto" parameter. This makes it possible for unauthenticated attackers to redirect users to potentially malicious sites if they can successfully trick them into performing an action.

CVSS v3.1
6.1 MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
CVSS v3.1
6.1 MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
EPSS
26.80% chance of exploitation in the next 30 days, 98th percentile
Nuclei
medium · CWE-601
Published
2024-01-29
Updated
2025-06-20

Proof-of-concept exploits (1)

Nuclei templates (1)

References

Related