CVE Explorer
CVE-2026-35447
NamelessMC is website software for Minecraft servers. In version 2.2.4, the profile page (modules/Core/pages/profile.php) processes wall post submissions and replies before verifying whether the viewer is authorized to access the profile. This allows any user with the profile.post permission to write wall posts to private or blocking profiles. Additionally, the reply branch does not verify that the target wall post belongs to the current profile, enabling attackers to inject replies into arbitra
Known exploited
Not asserted
Disputed
No
Stale source
No
Conflicts
0
Affected products and versions
1 source assertion{"product":"Nameless","vendor":"NamelessMC","versions":[{"status":"affected","version":"= 2.2.4"}]}
- cve_program_cvelist_v5affectedurn:baitaphish:normalized-source-record:v2:adfd2680564bbb8c00069bcde409d1dce140bf0f8847d21eeef3f7292ed6f7ac · sha256:3fcb89ace08d447f… · /containers/cna/affected/0
Provider-owned CVSS observations
1 source assertion{"metric":{"attackComplexity":"LOW","attackRequirements":"NONE","attackVector":"NETWORK","baseScore":5.3,"baseSeverity":"MEDIUM","privilegesRequired":"LOW","subAvailabilityImpact":"NONE","subConfidentialityImpact":"NONE","subIntegrityImpact":"NONE","userInteraction":"NONE","vectorString":"CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N","version":"4.0","vulnAvailabilityImpact":"NONE","vulnConfidentialityImpact":"LOW","vulnIntegrityImpact":"LOW"},"metric_type":"cvssV4_0"}
- cve_program_cvelist_v5cvssurn:baitaphish:normalized-source-record:v2:adfd2680564bbb8c00069bcde409d1dce140bf0f8847d21eeef3f7292ed6f7ac · sha256:3fcb89ace08d447f… · /containers/cna/metrics/0/cvssV4_0
CWE assertions
1 source assertion{"cweId":"CWE-201","description":"CWE-201: Insertion of Sensitive Information Into Sent Data","lang":"en","type":"CWE"}
- cve_program_cvelist_v5cweurn:baitaphish:normalized-source-record:v2:adfd2680564bbb8c00069bcde409d1dce140bf0f8847d21eeef3f7292ed6f7ac · sha256:3fcb89ace08d447f… · /containers/cna/problemTypes/0/descriptions/0
Source references
2 source assertions{"tags":["exploit"],"url":"https://github.com/NamelessMC/Nameless/security/advisories/GHSA-c9xj-rxgw-g2hq"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:adfd2680564bbb8c00069bcde409d1dce140bf0f8847d21eeef3f7292ed6f7ac · sha256:3fcb89ace08d447f… · /containers/adp/0/references/0
{"name":"https://github.com/NamelessMC/Nameless/security/advisories/GHSA-c9xj-rxgw-g2hq","tags":["x_refsource_CONFIRM"],"url":"https://github.com/NamelessMC/Nameless/security/advisories/GHSA-c9xj-rxgw-g2hq"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:adfd2680564bbb8c00069bcde409d1dce140bf0f8847d21eeef3f7292ed6f7ac · sha256:3fcb89ace08d447f… · /containers/cna/references/0
Attribution and limitations
- CVE Program CVEList V5: Reproduce the MITRE copyright designation and CVE license in copies. Source →
Provider severity values are preserved separately. Baitaphish does not convert them into a risk rating, infer affected products, or treat EPSS as observed exploitation.