
Poc for Unauthenticated Admin Session Hijack - Pie Register Plugin (≤ 3.7.1.4)
Unauthenticated Admin Session Hijack - Pie Register Plugin (≤ 3.7.1.4)
This exploit targets a vulnerability in the Pie Register WordPress plugin (versions ≤ 3.7.1.4), allowing unauthenticated session hijacking of admin accounts.
🛡️ This tool is for authorized testing and research only. Do not use it on systems you do not own or have explicit permission to test.
python3 CVE-2025-34077.py http://target.site
python3 CVE-2025-34077.py http://example.com
Set-Cookie values from unauthenticated responseThis script is provided for:
You are fully responsible for any misuse. Unauthorized use of this tool may violate laws.
This project is licensed under the MIT License.