Joplin is an open source note-taking and to-do application that organises notes and lists into notebooks. Prior to 3.7.2, Joplin Server's UserModel.ssoLogin() returns an existing account matched by an IdP-asserted email without checking the account's is_extern
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
| # | POC 描述 | 源链接 | 神龙链接 |
|---|
未找到公开 POC。
登录以生成 AI POC| CVE-2026-46649 | 9.1 CRITICAL | Joplin: SSO Auth Code Login Missing Rate Limiting — 9-Digit Numeric Code Brute-Forceable v |
| CVE-2026-55105 | 7.7 HIGH | Joplin: Fountain embeds allow arbitrary script execution in published notes and the note v |
| CVE-2026-59814 | 7.6 HIGH | Joplin: Stored XSS via inline-served note attachment on published shares |
| CVE-2026-49450 | 7.1 HIGH | Joplin desktop Windows auto-updater accepts signed installer from any publisher because ap |
| CVE-2026-49453 | 7.0 HIGH | Joplin: Path traversal in resource sync — silent arbitrary file write outside the resource |
| CVE-2026-55179 | 6.5 MEDIUM | Joplin: Logic error in Joplin Server allows a signed-in user to read any note from its int |
| CVE-2026-46650 | 4.4 MEDIUM | Joplin: Stored XSS in public share viewer via javascript: URL bypass in isAcceptedUrl |
| CVE-2026-59816 | 4.3 MEDIUM | Joplin: Path traversal in transcribe proxy endpoint via URL-encoded slash |
| CVE-2026-59815 | 4.3 MEDIUM | Joplin: Pending share recipients can write items into shared folders before accepting invi |
| CVE-2026-49449 | 2.5 LOW | Joplin: KaTeX `trust:true` enables URL-allowlist bypass leading to NTLMv2 credential theft |
暂无评论