WebSocket 应用程序接口(API)缺少对认证请求数量的限制。由于缺乏速率限制,攻击者可能利用此漏洞实施拒绝服务(DoS)攻击,或通过暴力破解攻击获取未授权访问权限。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-95102 | 9.4 CRITICAL | Monta monta.app Missing Authentication for Critical Function |
| CVE-2026-97212 | 7.3 HIGH | Monta monta.app Insufficient Session Expiration |
| CVE-2026-93474 | 6.5 MEDIUM | Monta monta.app Insufficiently Protected Credentials |
No comments yet