NextChat 2.15.8 至 2.16.1 版本的代理端点中存在一个 URL 校验不当的漏洞,攻击者可借此获取服务器的 OpenAI API 密钥。具体来说, 请求头在验证时采用了子串匹配而非域名解析,因此任何包含 的 URL 都能通过校验,并在 请求头中返回服务器的凭据。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| ChatGPTNextWeb | NextChat | 2.15.8 ~ 2.16.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet