<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Form-Notify — PoC Archive</title><link>https://poc.intelseclab.com/tags/form-notify/</link><description>Latest proof-of-concept entries.</description><generator>Hugo</generator><language>en-us</language><lastBuildDate>Sun, 05 Jul 2026 00:00:00 +0000</lastBuildDate><atom:link href="https://poc.intelseclab.com/tags/form-notify/index.xml" rel="self" type="application/rss+xml"/><item><title>Form Notify WordPress Plugin — LINE OAuth Authentication Bypass to Account Takeover (CVE-2026-5229)</title><link>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-5229-form-notify-line-oauth-bypass/</link><pubDate>Sun, 05 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-5229-form-notify-line-oauth-bypass/</guid><description>Critical severity (CVSS 9.8) — web · CVE-2026-5229. Status: PoC. Affects: Form Notify WordPress plugin, LINE Login OAuth 2.0 integration (src/APIs/Line/Login/Route.php, User.php). Tags: wordpress, form-notify, oauth, line-login, authentication-bypass, account-takeover, cookie-injection, cve-2026-5229.</description><category>web</category><category>Critical</category><category>wordpress</category><category>form-notify</category><category>oauth</category><category>line-login</category><category>authentication-bypass</category><category>account-takeover</category><category>cookie-injection</category><category>cve-2026-5229</category></item></channel></rss>