Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Summarize < 0.17.0 SSRF via podcast:transcript URL fetch
Vulnerability Description
Summarize before 0.17.0 contains a server-side request forgery vulnerability that allows attackers who control a podcast RSS feed to direct the host to fetch transcript content from loopback addresses, link-local addresses, RFC 1918 private ranges, or other reserved destinations by supplying malicious podcast:transcript URL values. Attackers can bypass protections through DNS rebinding and redirect-based techniques, as redirect targets are not revalidated and hostnames are not resolved before request dispatch, exposing internal service responses through the summarization flow.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:N/A:N
Vulnerability Type
服务端请求伪造(SSRF)
Vulnerability Title
Summarize 代码问题漏洞
Vulnerability Description
Summarize是Peter Steinberger个人开发者的一款支持多来源的快速摘要工具。 Summarize 0.17.0之前版本存在代码问题漏洞,该漏洞源于服务端请求伪造,攻击者可通过提供恶意podcast:transcript URL值,控制播客RSS源以引导主机从回环地址、链路本地地址、RFC 1918私有范围或其他保留目的地获取转录内容。攻击者可通过DNS重新绑定和重定向技术绕过保护,暴露内部服务响应。
CVSS Information
N/A
Vulnerability Type
N/A