在 sanjevirau 的 gsubs 1.0.3 及更早版本中已发现一个安全弱点。受影响的是 Electron 组件中 文件里的 函数。通过操纵其参数 ,可能导致代码注入。该攻击可以远程执行,且利用方法(PoC/漏洞利用代码)已向公众公开,可被用于发起攻击。厂商已在此披露信息公布前收到通知,但至今未作任何回应。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| sanjevirau | gsubs | 1.0.0 |
cpe:2.3:a:sanjevirau:gsubs:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet