Brushfire 平台的视频内容流媒体应用(https://online.brushfire.com)在用户请求中暴露了数据库路径,允许远程未认证的攻击者读取其他用户的信息。该漏洞已于 2026 年 2 月修复。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Brushfire | Online Experience | < 2026-02-26 |
affected |
2026-02-26 |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Brushfire | Online Experience | 0 ~ 2026-02-26 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet