Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

CVE-2026-97875— DNS rebinding vulnerability in rojo serve HTTP API

Quick assessment

Affected
rojo-rbx rojo
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

Rojo 的 “rojo serve” HTTP API(默认端口为 34872)未对 Host/Origin 头部进行验证,因此易受 DNS 重绑定攻击。恶意网页可以在无需用户交互(仅需访问该页面)的情况下,读取所有项目源代码、将恶意代码写入磁盘文件,并通过调用 opener::open() 启动本地程序。

CVSS 8.1 · High EPSS 0.26% · P16

Affected Version Matrix 1

VendorProduct Version RangeStatus
rojo-rbx rojo < 7.7.0 affected
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-97875

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
DNS rebinding vulnerability in rojo serve HTTP API
Source: CVE Program / CVE List V5
Vulnerability Description
Rojo's "rojo serve" HTTP API (default port 34872) has no Host/Origin header validation, making it vulnerable to DNS rebinding. A malicious webpage can read all project source, write malicious code to files on disk, and launch local programs via opener::open() with no user interaction beyond visiting the page.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N
Source: CVE Program / CVE List V5
Vulnerability Type
不恰当地信任反向DNS
Source: CVE Program / CVE List V5

Affected Products

Vendor Product Affected Versions CPE Subscribe
rojo-rbx rojo 0 ~ 7.7.0 -

II. Public POCs for CVE-2026-97875

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-97875

请登录查看更多情报信息。

Patches & Fixes for CVE-2026-97875 (1)

Vendor Advisories for CVE-2026-97875 (2)

IV. Related Vulnerabilities

V. Comments for CVE-2026-97875

No comments yet


Leave a comment