Mantis Bug Tracker(MantisBT)是Mantis Bug Tracker开源的一个 bug 跟踪器。 Mantis Bug Tracker 2.28.1及之前版本存在访问控制错误漏洞,该漏洞源于ProjectUsersAddCommand中访问控制检查不足,允许具有manage_project_threshold访问级别的用户向任何用户授予项目级管理员访问权限,可能导致权限提升。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-34754 | 4.3 MEDIUM | MantisBT allows unauthorized users to upload attachments to restricted issues via REST API |
| CVE-2026-33052 | MantisBT: Authorization Bypass in Global Profile Creation | |
| CVE-2026-34744 | MantisBT authorization bypass allows continued access to self-uploaded attachments on priv | |
| CVE-2026-34463 | MantisBT has Stored HTML Injection/XSS via Clone Issue Form | |
| CVE-2026-34579 | MantisBT has an authorization bypass via private issue monitoring | |
| CVE-2026-34970 | MantisBT Bugnote Revision Page Leaks Private Issue Metadata After Issue Access Is Revoked |
No comments yet