SSRF Bypass via DNS TOCTOU in codewhale & deepseek-tui: POC & Advisory
Security Advisory
High
GitHub / Hmbown (CodeWhale)
Affected:
- codewhale (npm) >= 0.8.41, < 0.8.64
- codewhale-tui (Rust) >= 0.8.41, < 0.8.64
- deepseek-tui (Rust) >= 0.8.5, < 0.8.41
- deepseek-tui (npm) >= 0.8.5, < 0.8.41
Fixed in:
- codewhale (npm) 0.8.64
- codewhale-tui (Rust) 0.8.64
- deepseek-tui (npm) 0.8.41
Referenced CVEs:
CVE-2026-75856 · 8.6
文章内图片已隐藏以节省流量 · Upgrade to Pro to view images & offline archive
This content was auto-fetched from github.com, cleaned by our LLM pipeline, and translated to English. View original.