在 CTFd 3.8.4 及更早版本中发现了一个漏洞。受影响的组件是文件 CTFd/utils/validators/__init__.py 中的 _is_safe_url 函数。通过对 Next 参数进行操纵,可导致开放重定向漏洞。该漏洞可被远程利用。相关漏洞利用代码已公开,攻击者可加以利用。补丁提交为 5d8515842fd1ab2c3a9f2dde9ffca907aa334ea9。建议升级受影响的组件以修复此问题。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | CTFd | 3.8.0 |
cpe:2.3:a:ctfd:ctfd:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet