Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
OpenReplay: Unauthenticated stored XSS leads to dashboard account takeover
Vulnerability Description
OpenReplay is a self-hosted session replay suite. From 1.24.0 before 1.25.0, the OpenReplay tracking SDK accepts custom event names and captured page URLs from any visitor using a public project key, stores them in ClickHouse without output encoding, and later renders them in the authenticated dashboard through TextEllipsis and the event-details modal, allowing an unauthenticated attacker to store script that executes in the dashboard origin, reads the session JWT from localStorage, and takes over a dashboard account. This issue is fixed in version 1.25.0.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:N
Vulnerability Type
在Web页面生成时对输入的转义处理不恰当(跨站脚本)
Vulnerability Title
OpenReplay 跨站脚本漏洞
Vulnerability Description
OpenReplay是OpenReplay公司开源的一款开发人员友好的、自托管的会话重播软件。 OpenReplay 1.24.0版本至1.25.0之前版本存在跨站脚本漏洞,该漏洞源于OpenReplay tracking SDK接受自定义事件名称和捕获的页面URL,未进行输出编码,且未认证攻击者可以存储脚本,导致跨站脚本攻击,从而读取会话JWT并接管仪表盘账户。
CVSS Information
N/A
Vulnerability Type
N/A