Compliance-trestle(Trestle)是一个用于将合规性作为代码进行管理的工具平台。在 3.12.4 之前的版本以及 4.0.0 至 4.0.3 版本中,用于防止服务器端请求伪造(SSRF)的 URLSecurityValidator 存在绕过漏洞,攻击者可利用该漏洞访问本应被阻止的环回地址、链路本地地址、云元数据服务地址以及内部网络端点。 具体而言,该黑名单未对 IPv4 映射的 IPv6 字面量(例如 )进行规范化处理。这些地址在解析后会生成 IPv6Address 对象,从而无法匹配被阻止的
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| oscal-compass | compliance-trestle | < 3.12.4 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2026-54757 | 7.8 HIGH | Trestle has Server-Side Template Injection (SSTI) via Recursive Template Re-evaluation of |
| CVE-2026-57170 | 7.8 HIGH | Trestle SSTI in Jinja2 include tags allows arbitrary code execution (Incomplete fix of CVE |
| CVE-2026-57171 | 7.7 HIGH | Trestle is vulnerable to arbitrary file write via path traversal in author generate comman |
No comments yet