Lektor 3.3.14 和 3.4.0b15 版本的管理 API 蓝图存在跨站请求伪造(CSRF)漏洞。该漏洞允许未经身份验证的攻击者通过发送缺少 CSRF 令牌、Origin/Referer 校验、CORS 配置或 Host 白名单验证的跨域请求,执行状态变更操作。攻击者可利用恶意网页调用 newattachment、deleterecord、build、clean 和 publish 等接口,从而写入任意文件、删除页面、清除构建输出、触发部署发布;此外,通过 DNS 重绑定技术还可访问读取类接口以泄露数据。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet