Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A host header injection vulnerability in scheduleR v0.0.18 allows attackers to obtain the password reset token via user interaction with a crafted password reset link. This allows attackers to arbitrarily reset other users' passwords and compromise their accounts.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
scheduleR 安全漏洞
Vulnerability Description
scheduleR是bart6114个人开发者的一个可用于部署 R 任务、报告和应用程序的框架。 scheduleR 0.0.18版本存在安全漏洞,该漏洞源于存在主机头注入漏洞,允许攻击者通过用户与精心设计的密码重置链接交互来获取密码重置令牌。
CVSS Information
N/A
Vulnerability Type
N/A