Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
PlaciPy Code Execution Allowed Without Assessment Active State Validation
Vulnerability Description
PlaciPy is a placement management system designed for educational institutions. In version 1.0.0, the code evaluation endpoint does not validate the assessment lifecycle state before allowing execution. There is no check to ensure that the assessment has started, is not expired, or the submission window is currently open.
CVSS Information
N/A
Vulnerability Type
授权机制不恰当
Vulnerability Title
PlaciPy 授权问题漏洞
Vulnerability Description
PlaciPy是PlaciPy开源的一个生成占位符图片的工具。 PlaciPy 1.0.0版本存在授权问题漏洞,该漏洞源于代码评估端点未验证评估生命周期状态,可能导致未授权执行。
CVSS Information
N/A
Vulnerability Type
N/A