漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Nuxt: Route-rule middleware bypass via case-sensitivity mismatch between vue-router and the routeRules matcher
Vulnerability Description
Nuxt is an open-source web development framework for Vue.js. From versions 3.11.0 to before 3.21.7 and 4.0.0 to before 4.4.7, there is a route-rule middleware bypass via case-sensitivity mismatch between vue-router and the routeRules matcher. This issue has been patched in versions 3.21.7 and 4.4.7.
CVSS Information
N/A
Vulnerability Type
大小写敏感处理不恰当
Vulnerability Title
Nuxt 输入验证错误漏洞
Vulnerability Description
Nuxt是Nuxt团队开源的一个免费的开源框架。 Nuxt 3.11.0至3.21.7之前版本和4.0.0至4.4.7之前版本存在输入验证错误漏洞,该漏洞源于vue-router与routeRules匹配器之间的大小写不匹配,可能导致路由规则中间件绕过。
CVSS Information
N/A
Vulnerability Type
N/A