在 stoatchat 0.15.5 之前的版本中,系统在多因素认证(MFA)登录挑战时未正确实施账户级别的尝试次数限制。这使得那些已知用户密码的攻击者,能够仅依靠基于 IP 地址的速率限制来暴力猜测时间一次性密码(TOTP)码。攻击者可以在多次失败的尝试中重复使用 MFA 挑战票据,并通过分散猜测请求至多个不同 IP 地址,从而绕过速率限制,最终获得对目标账户的非法访问权限。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-100679 | 8.8 HIGH | stoatchat before 0.15.5 MFA Bypass via Cross-Account Ticket |
| CVE-2026-100676 | 8.2 HIGH | stoatchat before 0.15.5 Local Filesystem Read via SVG |
| CVE-2026-100675 | 6.5 MEDIUM | stoatchat before 0.15.5 Denial of Service via mass mentions |
| CVE-2026-100677 | 5.3 MEDIUM | stoatchat before 0.15.5 Account Enumeration via Error Location |
| CVE-2026-100674 | 4.3 MEDIUM | stoatchat before 0.15.5 Username Validation Bypass via Unicode Sanitization |
No comments yet