Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-Site Scripting (XSS) vulnerability in NodeBB v4.0.4 and before allows remote attackers to store arbitrary code and potentially render the blacklist IP functionality unusable until content is removed via the database.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
NodeBB 安全漏洞
Vulnerability Description
NodeBB是Design Create Play团队的一套使用Node.js(一套建立在Google V8 JavaScript引擎之上的网络应用平台)构建的论坛系统。 NodeBB 4.0.4及之前版本存在安全漏洞,该漏洞源于容易受到存储型跨站脚本攻击,可能导致黑名单IP功能失效。
CVSS Information
N/A
Vulnerability Type
N/A