漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
N/A
Vulnerability Description
All versions of snyk-broker before 4.79.0 are vulnerable to Arbitrary File Read. It allows partial file reads for users who have access to Snyk's internal network via patch history from GitHub Commits API.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
snyk-broker 信息泄露漏洞
Vulnerability Description
snyk-broker是一款用于snyk.io和Git存储库之间访问的代理程序。 snyk-broker 4.79.0之前版本中存在安全漏洞。攻击者可通过GitHub Commits API中的补丁历史记录利用该漏洞读取Snyk内部网络的部分文件。
CVSS Information
N/A
Vulnerability Type
N/A