SeaweedFS 是一个用于文件和 Blob 的分布式存储系统。在 3.88 至 4.39 版本中,SFTP 服务在评估配置的路径权限时采用“字面字符串前缀”匹配方式,导致被限制在特定路径下的用户,也能访问任何仅以相同字符开头的同级路径。因此,一个被授予 /tenants/alice 访问权限的用户,同样会匹配到 /tenants/alice-archive、/tenants/alice2 等类似路径,因为该检查未强制要求路径组件边界。一个拥有根目录为家目录且具有狭窄路径权限的已认证低权限 SFTP 用户,从而可
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-77298 | 8.7 HIGH | SeaweedFS S3 OIDC Bearer authentication bypasses IAM role trust policy |
| CVE-2026-77368 | 7.6 HIGH | SeaweedFS: Authenticated Cross-Prefix IDOR in Filer TUS Handler Enables Arbitrary Write to |
| CVE-2026-77611 | 7.1 HIGH | SeaweedFS: Authenticated S3 object-scope bypass in PutObjectAcl allows overwriting a diffe |
No comments yet