http-cache-semantics 库在 4.2.0 及之前版本中,在处理客户端发送的 指令时,未能正确验证已被安全清零(security-zeroed)的缓存条目。这允许未经身份验证的攻击者检索属于其他用户的缓存响应。具体而言,攻击者可以通过请求相同的 URL 并设置一个较大的 值,从那些出于安全原因被故意清零的共享缓存条目中,获取其他用户的 会话凭据。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| kornelski | http-cache-semantics | ≤ 4.2.0 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| kornelski | http-cache-semantics | 0 ~ 4.2.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet