漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
link-preview-js DNS Rebinding SSRF Bypass / Incomplete Fix for CVE-2026-43897
Vulnerability Description
Link Preview JS extracts web links information. Prior to 4.0.4, the resolveDNSHost mitigation in index.ts validates one resolved IP address but fetches the original hostname, allowing an attacker-controlled DNS server to return a public address during validation and a loopback or internal address during the final connection. This DNS rebinding condition bypasses the SSRF protection and can cause the server-side preview fetch to reach internal HTTP resources. Redirect handling is affected by the same validation-to-fetch mismatch. This issue is fixed in version 4.0.4.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Vulnerability Type
服务端请求伪造(SSRF)
Vulnerability Title
op-engineering Link Preview JS 服务端请求伪造漏洞
Vulnerability Description
op-engineering Link Preview JS是op-engineering组织的一款软件开发行业中用于生成网页链接预览的中间件。 op-engineering Link Preview JS 4.0.4之前版本存在服务端请求伪造漏洞,该漏洞源于index.ts中的resolveDNSHost缓解措施验证一个解析的IP地址但获取原始主机名,导致DNS重绑定绕过SSRF保护,可能使服务器端预览获取访问内部HTTP资源。
CVSS Information
N/A
Vulnerability Type
N/A