SimpleChat 是一款安全的 AI 对话应用程序,支持个人和团队工作区,并提供基于文档的交互功能。在版本 0.261.003 和 0.261.027 中,POST /api/user/plugins 接口存在一个授权顺序缺陷(authorization ordering flaw),使得经过身份验证的低权限用户可以省略顶层的 MCP(Model Context Protocol)类型字段,从而绕过 _reject_non_admin_mcp_stdio 检查。这是因为该检查发生在从元数据中恢复类型之前。 随后
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| microsoft | simplechat | < 0.261.031 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-105794 | 9.1 CRITICAL | MsQuic: Improper Certificate Validation in Microsoft.Native.Quic.MsQuic.OpenSSL |
| CVE-2026-105793 | 9.1 CRITICAL | Microsoft UFO: Authenticated Android shell command injection in Mobile MCP `press_key` |
| CVE-2026-105796 | 8.8 HIGH | Kiota: Code injection through doc-comment delimiter reformation in Kiota Java and PHP gene |
| CVE-2026-105788 | 8.8 HIGH | Microsoft UFO: Authenticated Android shell command injection in Mobile MCP type_text and l |
| CVE-2026-105798 | 8.7 HIGH | SimpleChat: Stored XSS via group document filename in inline onclick handler |
| CVE-2026-105791 | 7.5 HIGH | Microsoft UFO: Arbitrary code execution in `run_shell` via `explorer.exe` argument injecti |
| CVE-2026-105792 | 6.5 MEDIUM | Microsoft UFO: Authenticated task-result request can deadlock UFO server session manager |
| CVE-2026-105790 | 6.4 MEDIUM | Microsoft UFO: Authenticated Galaxy device registration can bypass WebSocket SSRF IP pinni |
| CVE-2026-105789 | 5.4 MEDIUM | Microsoft UFO: Arbitrary file write in the Linux MCP `execute_command` tool |
| CVE-2026-105795 | 3.1 LOW | Kiota: Unsafe oauth_card_path references in Kiota-generated API plugin manifests |
No comments yet