Wiki.js 在 2.5.314 及更早版本中,多个 GraphQL 解析器在授权检查中遗漏了对页面标签的处理,导致基于标签的访问限制可被绕过。攻击者可以通过查询 list、tree、tags、searchTags 和 links 解析器,在未进行适当授权的情况下获取受限页面的元数据,包括标题、描述、路径和标签信息。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-92776 | 8.1 HIGH | Wiki.js through 2.5.314 Path Prefix Matching Authorization Bypass |
| CVE-2026-92775 | 6.5 MEDIUM | Wiki.js through 2.5.314 Server-Side Request Forgery via Image Prefetch |
No comments yet