ajenti是ajenti团队开源的一个 Linux 和 BSD 模块化服务器管理面板。 Ajenti Project Ajenti 2.2.13及之前版本存在安全漏洞,该漏洞源于HTTP响应初始化空标头列表时缺少反框架保护(如X-Frame-Options或Content-Security-Policy frame-ancestors限制),导致浏览器登录和管理界面存在点击劫持弱点。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-14792 | 6.5 MEDIUM | Formbricks Survey actions.ts access control |
| CVE-2025-15668 | 3.3 LOW | GPAC MP4Box box_code_base.c sgpd_del_entry heap-based overflow |
| CVE-2025-15667 | 3.3 LOW | GPAC MP4Box avc_ext.c gf_isom_nalu_sample_rewrite double free |
| CVE-2026-14801 | 3.3 LOW | GPAC TeXML File load_text.c txtin_probe_duration divide by zero |
| CVE-2026-14790 | 3.3 LOW | GPAC Media File write_nhml.c nhmldump_send_frame null pointer dereference |
| CVE-2026-38976 | Hayato Ishida mruby/c 安全漏洞 | |
| CVE-2026-38973 | Hayato Ishida mruby/c 安全漏洞 |
No comments yet