Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Elixir Plug before v1.0.4, v1.1.7, v1.2.3 and v1.3.2 is vulnerable to null byte injection in the Plug.Static component, which may allow users to bypass filetype restrictions.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Elixir Plug Plug.Static组件权限许可和访问控制问题漏洞
Vulnerability Description
Elixir Plug是一个用于开发基于Erlang VM的Web应用程序的库。Plug.Static是其中的一个静态组件。 Elixir Plug中的Plug.Static组件存在安全漏洞。本地攻击者可利用该漏洞绕过文件类型限制。以下版本受到影响:Elixir Plug 1.0.4之前的版本,1.1.7之前的版本,1.2.3之前的版本,1.3.2之前的版本。
CVSS Information
N/A
Vulnerability Type
N/A