ChuanhuChatGPT是为ChatGPT/ChatGLM/LLaMA/StableLM/MOSS等多种LLM提供了一个轻快好用的Web图形界面。 ChuanhuChatGPT 存在安全漏洞,该漏洞源于模型输出数据的清理和验证不足,导致存储型跨站脚本漏洞。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| gaizhenbiao | gaizhenbiao/chuanhuchatgpt | unspecified ~ latest | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-5278 | Unrestricted File Upload leading to RCE in gaizhenbiao/chuanhuchatgpt | |
| CVE-2024-5124 | Timing Attack Vulnerability in gaizhenbiao/chuanhuchatgpt | |
| CVE-2024-3234 | Path Traversal in gaizhenbiao/chuanhuchatgpt | |
| CVE-2024-3404 | Improper Access Control in gaizhenbiao/chuanhuchatgpt |
No comments yet