TREK 是一款协作式旅行规划工具。在 3.3.0 版本之前,当启用 LLM_PARSING 功能时,经过身份验证的用户可通过设置 API 存储由攻击者控制的 llm_base_url 值。触发该漏洞所需的 AI 辅助导入路径需要对目标行程实例具有写权限。该值会被以下客户端直接使用,且未应用服务器端请求伪造(SSRF)防护机制: server/src/nest/llm-parse/clients/openai-compatible.client.ts server/src/nest/llm-parse/client
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| mauriceboe | TREK | < 3.3.0 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| mauriceboe | TREK | < 3.3.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-77293 | 7.1 HIGH | TREK: Cross-user note-file deletion (IDOR / Broken Access Control) |
| CVE-2026-77320 | 5.3 MEDIUM | TREK: Public trip share link ignores the `share_map` permission server-side (client-enforc |
| CVE-2026-77321 | 4.3 MEDIUM | TREK MCP trip summary bypasses delegated OAuth read scopes |
No comments yet