在 ag-ui-protocol 的 ag-ui 0.3.0 版本中发现了一个安全漏洞。受影响的文件是组件 Multimodal Content 中的 ,涉及函数 。通过对参数 的操纵,可引发服务器端请求伪造(SSRF)漏洞。该攻击可远程执行。该漏洞的修复补丁标识为 。建议实施该补丁以修复此问题。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| ag-ui-protocol | ag-ui | 0.3.0 |
cpe:2.3:a:ag-ui-protocol:ag-ui:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet