截至提交 bad75bdd 的 OpenPanel 版本未能对 ClickHouse SQL 查询中的属性键进行转义,使得经过身份验证的用户能够注入布尔型 SQL 条件。攻击者可以通过提供特制的过滤名称,从而绕过项目隔离机制,访问其他项目的指标数据。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Openpanel-dev | openpanel | 0 ~ bad75bddc74d12d36cfb843f4531d3b830a8d994 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-93985 | 9.9 CRITICAL | OpenPanel js-runtime JavaScript Template Sandbox Escape RCE |
| CVE-2026-93984 | 5.3 MEDIUM | OpenPanel API Authentication Bypass via Unverified Client Secret |
| CVE-2026-93982 | 3.3 LOW | OpenPanel MCP Authentication Token in Query Parameter Logged Plaintext |
No comments yet