漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
farion1231 cc-switch ProxyServer server.rs cross-domain policy
Vulnerability Description
A security flaw has been discovered in farion1231 cc-switch up to 3.12.3. Affected by this issue is some unknown functionality of the file src-tauri/src/proxy/server.rs of the component ProxyServer. The manipulation results in permissive cross-domain policy with untrusted domains. The attack can be executed remotely. The exploit has been released to the public and may be used for attacks.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Vulnerability Type
过度许可的跨域白名单
Vulnerability Title
CC Switch 安全漏洞
Vulnerability Description
CC Switch是Jason Young个人开发者的一个多模型命令行工具管理器。 CC Switch 3.12.3及之前版本存在安全漏洞,该漏洞源于对组件ProxyServer的文件src-tauri/src/proxy/server.rs中未知功能的操作不当,可能导致跨域策略过于宽松。
CVSS Information
N/A
Vulnerability Type
N/A