Joyland AI 应用允许拥有共享网络访问权限的攻击者向在 WebView 中加载的内容注入 JavaScript。在未获得用户授权的情况下,攻击者可访问剪贴板、通过 Weex 的 'stream' 模块发起任意 HTTP 请求,或访问应用内部存储。如果该应用此前已被授予相关权限,攻击者则可访问整个文件系统、摄像头、麦克风以及 GPS 定位信息。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Joyland | Joyland.ai | * |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Joyland | Joyland.ai | * | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-102666 | 6.5 MEDIUM | Joyland AI hard-coded credentials for push notifications |
| CVE-2026-102668 | 5.3 MEDIUM | Joyland AI accepts TLS certificates without validation |
| CVE-2026-102671 | 5.3 MEDIUM | Joyland AI WebView accepts invalid SSL certificates |
| CVE-2026-102669 | 5.3 MEDIUM | Joyland AI hostname checking disabled |
| CVE-2026-102670 | 4.3 MEDIUM | Joyland AI enables HTTP |
No comments yet