Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%
Vulnerability List
Found 12 results
CVE IDTitleVendorProductSeverityCVSS ScorePublished AtAI Analysis
CVE-2026-26016 Pterodactyl Panel Allows Cross-Node Server Configuration Disclosure via Remote API Missing Authorization pterodactylpanel 高危 -2026-02-19 15:55:20 Deep Dive
CVE-2025-69199 Pterodactyl Wings's websocket endpoints have no visible rate limits or monitoring, allowing for DOS attacks under certain circumstances pterodactylpanel--2026-01-19 19:17:54 Deep Dive
CVE-2025-69198 Pterodactyl's improper resource locking allows raced queries to create more resources than alloted pterodactylpanel--2026-01-19 19:05:39 Deep Dive
CVE-2025-69197 Pterodactyl TOTPs can be reused during validity window pterodactylpanel Medium 6.5 2026-01-06 00:44:23 Deep Dive
CVE-2025-68954 Pterodactyl does not revoke SFTP access when server is deleted or permissions reduced pterodactylpanel 中危 -2026-01-06 00:31:15 Deep Dive
CVE-2025-49132 Pterodactyl Panel Allows Unauthenticated Arbitrary Remote Code Execution pterodactylpanel Critical 10.0 2025-06-20 16:56:41 Deep Dive
CVE-2024-49762 Pterodactyl Panel has plain-text logging of user passwords when two-factor authentication is disabled pterodactylpanel Medium 4.6 2024-10-24 21:39:25 Deep Dive
CVE-2024-34067 Multiple cross site scripting (XSS) vulnerabilities in the admin area of Pterodactyl panel pterodactylpanel Medium 6.1 2024-05-03 17:38:18 Deep Dive
CVE-2021-41273 Cross-Site Request Forgery allowing sending of test emails and generation of node auto-deployment keys pterodactylpanel Medium 4.3 2021-11-17 19:30:12 Deep Dive
CVE-2021-41176 logout CSRF in Pterodactyl Panel pterodactylpanel Medium 4.3 2021-10-25 16:50:10 Deep Dive
CVE-2021-41129 Authentication bypass in Pterodactyl pterodactylpanel High 8.1 2021-10-06 20:05:11 Deep Dive
CVE-2019-1020002 Pterodactyl 信息泄露漏洞 PterodactylPterodactyl Panel 高危 -2019-07-29 14:25:23 Deep Dive