Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
hopetree izone lts c011b48 contains a server-side request forgery (SSRF) vulnerability in the active push function as \\apps\\tool\\apis\\bd_push.py does not securely filter user input through push_urls() and get_urls().
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
izone 安全漏洞
Vulnerability Description
izone是Hopetree个人开发者的一个基于 Django 的博客项目。 izone存在安全漏洞,该漏洞源于apps oolapisd_push.py中的push_urls和get_urls函数包含一个服务端请求伪造。
CVSS Information
N/A
Vulnerability Type
N/A