Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Lychee-v3 3.2.16 is affected by a Cross Site Scripting (XSS) vulnerability in php/Access/Guest.php. The function exit will terminate the script and print the message to the user. The message will contain albumID which is controlled by the user.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Lychee 跨站脚本漏洞
Vulnerability Description
Lychee是The Lychee Organisation开源的一个漂亮且易于使用的照片管理系统。用于管理和共享照片。 Lychee 存在跨站脚本漏洞,该漏洞源于 Lychee-v3 3.2.16 受 php/Access/Guest.php 中的跨站点脚本 (XSS) 漏洞影响。 函数 exit 将终止脚本并将消息打印给用户。 该消息将包含由用户控制的专辑 ID。
CVSS Information
N/A
Vulnerability Type
N/A