CVE PagerMaid-Pyro 网页控制面板密码泄漏安全警告 漏洞等级 严重 影响范围 >= 1.2.30, < 1.4.14… — PagerMaid-Modify Update — TG.ME

#CVE

PagerMaid-Pyro
网页控制面板密码泄漏安全警告

漏洞等级

严重


影响范围

>= 1.2.30, < 1.4.14, 开启网页控制面板的用户

修复方案

执行 ,update 升级到最新版,如果您不想升级请关闭网页控制面板或者禁止外网访问。

详情

https://github.com/TeamPGM/PagerMaid-Pyro/security/advisories/GHSA-w8pq-5mrm-qfgq

频道 @PagerMaid_Modify
GitHub
PagerMaid-Pyro web token leaks
### Summary When accessing the web control panel, the homepage hardcodes the token string, resulting in potential token leakage. ### PoC Because the log component in the amis template does...
😱19👍6❤4👌2😢1
September 22, 2024 21K 26 39