BookWyrm 0.9.1 及更早版本中存在一个授权绕过漏洞,位于 函数中,允许已认证用户修改其他用户的阅读记录。攻击者可以利用顺序分配的 ReadThrough ID,覆盖任意用户的开始日期、完成日期、进度及进度模式,从而影响阅读统计数据及导出的数据。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| bookwyrm-social | bookwyrm | ≤ 0.9.1 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| bookwyrm-social | bookwyrm | 0 ~ 0.9.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-86111 | 6.5 MEDIUM | BookWyrm through 0.9.1 Insecure Direct Object Reference in EditStatus Exposes Followers-On |
| CVE-2026-86112 | 5.4 MEDIUM | BookWyrm through 0.9.1 Missing Authorization on the Favorite and Unfavorite Endpoints |
No comments yet