Microsoft SimpleChat是美国Microsoft公司开源的一个基于大语言模型(LLM)的综合性 AI 聊天应用程序。 Microsoft SimpleChat 0.241.203之前版本存在安全漏洞,该漏洞源于对GET /api/user/info/<user_id>和GET /api/user/profile-image/<user_id>端点缺乏对象级授权,允许低权限的已验证用户检索其他用户的电子邮件地址、显示名称和个人资料图像。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| microsoft | simplechat | < 0.241.203 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| microsoft | simplechat | < 0.241.203 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-59866 | 9.3 CRITICAL | Kiota: Arbitrary file write + code-injection via x-ms-kiota-info clientClassName and clien |
| CVE-2026-59864 | 9.3 CRITICAL | Kiota: Path/URL injection into generated Copilot plugin manifest via x-ai-* extensions |
| CVE-2026-59865 | 9.3 CRITICAL | Kiota: Command injection via x-ms-kiota-info dependencyInstallCommand surfaced by `kiota i |
| CVE-2026-59860 | 8.7 HIGH | Kiota: XML Doc-Comment Newline Breakout Code Injection |
| CVE-2026-59859 | 8.7 HIGH | Kiota: Code Generation Literal Injection in the PHP Generator |
| CVE-2026-57206 | 8.6 HIGH | SimpleChat plugin validation endpoints missing authentication and authorization |
| CVE-2026-59117 | 7.5 HIGH | Windows Terminal Remote Code Execution Vulnerability |
| CVE-2026-59861 | 7.5 HIGH | Kiota: Code Generation Literal Injection in Kiota Ruby Generator |
| CVE-2026-53598 | 7.5 HIGH | Prompty: Arbitrary File Read via ${file:path} Reference Expansion |
| CVE-2026-59862 | 7.5 HIGH | Kiota: Code Generation Literal Injection in the Python Generator |
| CVE-2026-59867 | 7.1 HIGH | Kiota: Generation-time SSRF + remote/local file inclusion via unrestricted $ref |
| CVE-2026-58598 | 7.0 HIGH | Windows Backup Service Elevation of Privilege Vulnerability |
| CVE-2026-59863 | 7.0 HIGH | Kiota: Workspace-config poisoning: out-of-repo file write + generation-time SSRF |
| CVE-2026-55440 | 6.5 MEDIUM | Microsoft UFO: COMMAND_RESULTS handler creates unowned sessions, allowing authenticated se |
| CVE-2026-58643 | 6.1 MEDIUM | Windows Admin Center Spoofing Vulnerability |
| CVE-2026-62826 | 4.6 MEDIUM | Microsoft SharePoint Server Spoofing Vulnerability |
| CVE-2026-54568 | 4.3 MEDIUM | Microsoft UFO: Missing Authorization in DEVICE_INFO_REQUEST Allows a DEVICE Client to Read |
| CVE-2026-54733 | moodle-local_o365: Authentication bypass via unverified JWT signature in Teams SSO endpoin | |
| CVE-2026-53597 | Prompty: Arbitrary code execution via JavaScript frontmatter in TypeScript loader |
No comments yet