从提交 bad75bdd 开始的 OpenPanel 版本会将模型上下文协议(MCP)的认证令牌从 URL 查询参数中以未脱敏的明文形式写入应用程序日志。任何能够访问应用标准输出(stdout)或集中式日志系统的攻击者,都可以捕获这些 Base64 编码的凭据,从而重放 MCP 请求并访问项目分析数据。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Openpanel-dev | openpanel | 0 ~ bad75bddc74d12d36cfb843f4531d3b830a8d994 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-93985 | 9.9 CRITICAL | OpenPanel js-runtime JavaScript Template Sandbox Escape RCE |
| CVE-2026-93984 | 5.3 MEDIUM | OpenPanel API Authentication Bypass via Unverified Client Secret |
| CVE-2026-93983 | 5.0 MEDIUM | OpenPanel SQL Injection via ClickHouse Property Key Filter |
No comments yet