Likely 0-day
AstrBot contains a default login vulnerability. An attacker can access the AstrBot dashboard using default credentials and gain control over the chatbot framework, modify configurations, manage LLM providers, and execute unauthorized operations.
id: astrbot-default-login
info:
name: AstrBot - Default Login
author: theamanrawat
severity:
...