eidetic-labs stigmem是eidetic-labs组织的一款威胁情报网络产品。 eidetic-labs stigmem 0.9.0a1版本存在输入验证错误漏洞,该漏洞源于时间戳处理不匹配,可能将有效的对等令牌错误视为过期,影响使用联合对等身份验证路径的节点上经过身份验证的联合流程的可用性和可靠性。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| eidetic-labs | stigmem | < 0.9.0a2 |
affected |
0.9.0a2 |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| eidetic-labs | stigmem | 0 ~ 0.9.0a2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-76243 | 9.2 CRITICAL | stigmem before 0.9.0a2 Authentication Bypass via Disabled Auth |
| CVE-2026-76242 | 9.1 CRITICAL | stigmem Federation Peer Registration Authentication Bypass |
| CVE-2026-76244 | 9.1 CRITICAL | stigmem-node Insecure Federation Transport Configuration |
| CVE-2026-76237 | 8.6 HIGH | stigmem before 0.9.0a12 Cross-Tenant BOLA via quarantine |
| CVE-2026-76240 | 7.5 HIGH | stigmem Postgres SQL Injection via Schema Identifier |
| CVE-2026-76241 | 7.3 HIGH | stigmem Plugin Signature Enforcement Bypass via Configuration |
| CVE-2026-76238 | 7.2 HIGH | stigmem before 0.9.0a12 Cross-Tenant BOLA via decay sweep |
| CVE-2026-76236 | 7.2 HIGH | stigmem before 0.9.0a12 Cross-Tenant BOLA via Tombstones |
| CVE-2026-76239 | 6.3 MEDIUM | Stigmem before 0.9.0a11 SSRF via unvalidated webhook delivery_address |
No comments yet