ChuanhuChatGPT是Chuan Hu个人开发者的一款应用程序。为 ChatGPT 等多种 LLM 提供了一个轻快好用的 Web 图形界面和众多附加功能 ChuanhuChatGPT d4ec6a3版本存在输入验证错误漏洞,该漏洞源于gr.JSON组件存在本地文件包含漏洞,未经验证的用户可通过上传特制JSON文件访问服务器上的任意文件。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| gaizhenbiao | gaizhenbiao/chuanhuchatgpt | unspecified ~ latest | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-0191 | Denial of Service in gaizhenbiao/chuanhuchatgpt | |
| CVE-2025-0188 | SSRF in gaizhenbiao/chuanhuchatgpt | |
| CVE-2024-8400 | Stored XSS in gaizhenbiao/chuanhuchatgpt | |
| CVE-2024-8613 | Improper Access Control in gaizhenbiao/chuanhuchatgpt | |
| CVE-2024-10650 | Denial of Service (DoS) in gaizhenbiao/chuanhuchatgpt | |
| CVE-2024-10955 | ReDoS (Regular Expression Denial of Service) in gaizhenbiao/chuanhuchatgpt | |
| CVE-2024-9159 | Incorrect Authorization in gaizhenbiao/chuanhuchatgpt | |
| CVE-2024-9107 | Stored XSS in gaizhenbiao/chuanhuchatgpt | |
| CVE-2024-9216 | Authentication Bypass in gaizhenbiao/ChuanhuChatGPT |
No comments yet