Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross Site Request Forgery vulnerability in in the upload functionality of the User Profile pages in savignano S/Notify before 2.0.1 for Bitbucket allow attackers to replace S/MIME certificate or PGP keys for arbitrary users via crafted link.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
savignano S/Notify 安全漏洞
Vulnerability Description
savignano S/Notify是savignano公司的适用于 Jira、Confluence 和 Bitbucket 的最通用的电子邮件加密解决方案。 savignano S/Notify 2.0.1之前版本存在安全漏洞,该漏洞源于存在跨站点请求伪造漏洞,允许攻击者通过精心设计的链接替换任意用户的S/MIME证书或PGP密钥。
CVSS Information
N/A
Vulnerability Type
N/A