code100xDevs 100xdevs CMS v.1.0(2026-04-30)版本中存在一处问题,远程攻击者可通过 src/middleware.ts 和 src/app/api/mobile/search/route.ts 组件获取敏感信息。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-76783 | 7.3 HIGH | DeDeCMS advancedsearch.php sql injection |
| CVE-2026-76800 | 6.3 MEDIUM | DeDeCMS select_media_post.php unrestricted upload |
| CVE-2025-52182 | LS2 Admin v5.7-v5.8.0信息泄露漏洞 |
No comments yet