wger 在 2.6 之前的版本中,健身房会员 TSV 导出接口未能对 和 字段进行清洗,允许任意健身房会员注入电子表格公式。攻击者可以注入诸如 的公式,从而在管理员使用 Excel 或 LibreOffice Calc 打开导出的文件时,窃取管理员数据或执行代码。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| wger-project | wger | < 2.6 |
affected |
2.6 |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| wger-project | wger | 0 ~ 2.6 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-86254 | 6.8 MEDIUM | wger Incomplete Authorization Fix Cross-Tenant Account Deletion |
| CVE-2026-86255 | 6.5 MEDIUM | wger before 2.5 Uncontrolled Resource Consumption via date_sequence |
| CVE-2026-86256 | 5.4 MEDIUM | wger before 2.6 Open Redirect via trainer-login next parameter |
No comments yet