Sulu 是一个基于 Symfony 框架的开源 PHP 内容管理系统。在 2.6.25 和 3.0.8 之前的版本中, 中的 路由及其管理端变体,对于可脚本化的 MIME 类型会响应 查询参数。存在漏洞的存储型 Content-Type 值包括 、 、 和 。拥有媒体上传权限的攻击者可以存储 HTML、XHTML 或 XML 文档,并创建使用 的链接,从而使应用在 Sulu 源域下返回该文件,而不是强制将文件作为附件(Content-Disposition: attachment)下载。当经过身份验证的受害者打开
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-82394 | 5.3 MEDIUM | Sulu: Fix authorization bypass when creating preview links |
| CVE-2026-82395 | 5.3 MEDIUM | Sulu: Media move/update authorization bypass (IDOR) |
No comments yet