目标达成 感谢每一位支持者 — 我们达成了 100% 目标!

目标: 1000 元 · 已筹: 1359 元

100%

CVE-2026-77294— TREK 通过用户可配置的 LLM 基础 URL 存在服务端请求伪造漏洞

一分钟漏洞结论

影响对象
mauriceboe TREK
利用判断
尚无明确在野利用证据,仍需结合暴露面评估
建议动作
优先检查厂商安全公告和参考链接中的修复版本;无法立即升级时,限制受影响服务暴露并加强监测。

TREK 是一款协作式旅行规划工具。在 3.3.0 版本之前,当启用 LLM_PARSING 功能时,经过身份验证的用户可通过设置 API 存储由攻击者控制的 llm_base_url 值。触发该漏洞所需的 AI 辅助导入路径需要对目标行程实例具有写权限。该值会被以下客户端直接使用,且未应用服务器端请求伪造(SSRF)防护机制: server/src/nest/llm-parse/clients/openai-compatible.client.ts server/src/nest/llm-parse/client

CVSS 8.1 · High EPSS 0.31% · P21

影响版本矩阵 1

厂商产品 版本范围状态
mauriceboe TREK < 3.3.0 affected
获取后续新漏洞提醒 登录后订阅

一、 漏洞 CVE-2026-77294 基础信息

漏洞信息

对漏洞内容有疑问?看看神龙的深度分析是否有帮助!
查看神龙十问 ↗

尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。

Vulnerability Title
TREK: Server-Side Request Forgery via User-Configurable LLM Base URL
来源: CVE Program / CVE List V5
Vulnerability Description
TREK is a collaborative travel planner. Prior to 3.3.0, TREK allows an authenticated user to store an attacker-controlled llm_base_url through the settings API when the LLM_PARSING feature is enabled. Write permission to the target trip instance is required to trigger the vulnerable AI-assisted import path. The value is consumed by the clients in server/src/nest/llm-parse/clients/openai-compatible.client.ts, server/src/nest/llm-parse/clients/anthropic.client.ts, and server/src/nest/llm-parse/router/ollama-format.client.ts without applying the server-side request forgery guard. Triggering AI-assisted trip parsing causes the server to request the supplied destination, and upstream error response text can be returned in parsing warnings. This permits internal service discovery and access to link-local cloud metadata, with possible disclosure of infrastructure credentials and subsequent modification of protected cloud resources. This issue is fixed in version 3.3.0.
来源: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
来源: CVE Program / CVE List V5
Vulnerability Type
服务端请求伪造(SSRF)
来源: CVE Program / CVE List V5

受影响产品

厂商 产品 影响版本 CPE 订阅
mauriceboe TREK < 3.3.0 -

二、漏洞 CVE-2026-77294 的公开POC

# POC 描述 源链接 神龙链接
AI 生成 POC 高级

未找到公开 POC。

登录以生成 AI POC

三、漏洞 CVE-2026-77294 的情报信息

请登录查看更多情报信息。

CVE-2026-77294 补丁与修复 (1)

CVE-2026-77294 厂商安全公告 (1)

CVE-2026-77294 其他参考 (1)

同批安全公告 · mauriceboe · 2026-09-24 · 共 4 条

CVE-2026-77293 7.1 HIGH TREK 越权删除笔记文件漏洞
CVE-2026-77320 5.3 MEDIUM TREK 行程分享链接未校验 share_map 权限导致位置信息泄露
CVE-2026-77321 4.3 MEDIUM TREK MCP trip summary 绕过委托的 OAuth 读取范围漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2026-77294

暂无评论


发表评论