ChuanhuChatGPT是Chuan Hu个人开发者的一款应用程序。为 ChatGPT 等多种 LLM 提供了一个轻快好用的 Web 图形界面和众多附加功能 ChuanhuChatGPT 20240918版本存在安全漏洞,该漏洞源于未经验证的用户可通过发送大量数据负载导致拒绝服务,即使已修复CVE-2024-7807,攻击者仍可通过发送特定格式的数据使系统持续处理字符,导致服务长时间不可用。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| gaizhenbiao | gaizhenbiao/chuanhuchatgpt | unspecified ~ latest | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-0191 | Denial of Service in gaizhenbiao/chuanhuchatgpt | |
| CVE-2025-0188 | SSRF in gaizhenbiao/chuanhuchatgpt | |
| CVE-2024-8400 | Stored XSS in gaizhenbiao/chuanhuchatgpt | |
| CVE-2024-8613 | Improper Access Control in gaizhenbiao/chuanhuchatgpt | |
| CVE-2024-10955 | ReDoS (Regular Expression Denial of Service) in gaizhenbiao/chuanhuchatgpt | |
| CVE-2024-10707 | Local File Inclusion in gaizhenbiao/chuanhuchatgpt | |
| CVE-2024-9159 | Incorrect Authorization in gaizhenbiao/chuanhuchatgpt | |
| CVE-2024-9107 | Stored XSS in gaizhenbiao/chuanhuchatgpt | |
| CVE-2024-9216 | Authentication Bypass in gaizhenbiao/ChuanhuChatGPT |
No comments yet