CAPE是Kevin OReilly个人开发者的一个恶意软件沙箱。 CAPE存在安全漏洞,该漏洞源于reporting/mongodb.py和reporting/jsondump.py中存在分析拒绝漏洞,攻击者可提交样本生成深度嵌套或过大的行为数据,触发MongoDB BSON限制或orjson递归错误,导致行为分析报告不完整或缺失。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | CAPEv2 reporting/mongodb.py and reporting/jsondump.py allow denial-of-analysis when deeply nested or oversized behavior documents trigger orjson serialization errors or MongoDB BSON size/nesting limits, causing truncated or missing analysis reports. | https://github.com/eGkritsis/CVE-2025-61301 | POC Details |
No public POC found.
Login to generate AI POC| CVE-2025-26782 | SAMSUNG多款产品 安全漏洞 | |
| CVE-2025-54764 | Mbed TLS 安全漏洞 | |
| CVE-2025-61303 | Recorded Future Triage 安全漏洞 | |
| CVE-2025-60783 | Restaurant-Management-System-DBMS-project 安全漏洞 | |
| CVE-2025-60781 | PHP Education Management 安全漏洞 | |
| CVE-2025-61488 | SLiMS 9 Bulian 安全漏洞 | |
| CVE-2025-60856 | Reolink Video Doorbell WiFi DB_566128M5MP_W 安全漏洞 | |
| CVE-2024-55568 | SAMSUNG多款产品 安全漏洞 | |
| CVE-2025-48025 | SAMSUNG Exynos 安全漏洞 | |
| CVE-2025-56219 | SigningHub 安全漏洞 | |
| CVE-2025-26781 | SAMSUNG多款产品 安全漏洞 | |
| CVE-2025-61417 | TastyIgniter 安全漏洞 | |
| CVE-2025-61456 | E-commerce 安全漏洞 | |
| CVE-2025-54957 | Dolby Digital Plus Audio Decoder 安全漏洞 | |
| CVE-2025-61455 | E-commerce 安全漏洞 | |
| CVE-2025-61454 | E-commerce 安全漏洞 | |
| CVE-2025-56223 | SigningHub 安全漏洞 | |
| CVE-2025-56224 | SigningHub 安全漏洞 |
No comments yet