Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Directory traversal vulnerability in NextChat thru 2.16.0 due to the WebDAV proxy failing to canonicalize or reject dot path segments in its catch-all route, allowing attackers to gain sensitive information via authenticated or anonymous WebDAV endpoints.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
NextChat 安全漏洞
Vulnerability Description
NextChat是NextChat开源的一个用于快速部署私人 ChatGPT 网页应用的项目。 NextChat 2.16.0及之前版本存在安全漏洞,该漏洞源于WebDAV代理未能规范化或拒绝其通配路由中的点路径段,可能导致敏感信息泄露。
CVSS Information
N/A
Vulnerability Type
N/A