Lunary是Lunary开源的一个 LLM 的生产工具包。 Lunary 1.2.5及之前版本存在信息泄露漏洞,该漏洞源于存在信息泄露漏洞,暴露的哈希可能会助长帐户恢复攻击或其他恶意活动。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| lunary-ai | lunary-ai/lunary | unspecified ~ 1.2.6 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-3379 | Incorrect Authorization in lunary-ai/lunary | |
| CVE-2024-3760 | Email Bombing Vulnerability in lunary-ai/lunary | |
| CVE-2024-3501 | Exposure of Sensitive Information in lunary-ai/lunary |
No comments yet