### 漏洞概述 **标题**: array.insert_at index parameter DoS bypasses LoopLimit and LimitToString **描述**: 在Scriban中,`array.insert_at`函数分配了一个没有边界检查的`index - list.Count`的循环。该函数被暴露为模板内置函数`array.insert_at`,当`inde…
### 漏洞概述 **漏洞名称**: PrasonAI ships and generates a legacy API server with authentication disabled by default, allowing unauthenticated workflow execution **漏洞ID**: CVE-2026-44338 **严重程度**: 高(7.3/10) **…