FastGPT Community Edition 4.10.0 through 4.14.0 are vulnerable to a NoSQL injection in the POST /api/core/chat/getHistories endpoint. An unauthenticated attacker can inject malicious NoSQL operators via crafted JSON payloads to bypass authorization checks, resulting in unauthorized access to chat history titles of all users across the platform.
An issue in cleverange_auth v.0.1.10 allows a remote attacker to cause a denial of service via the account_verification function and the accounts/models.py component
Moby is an open source container framework. In versions prior to 29.5.1 and in moby/moby v2 prior to v2.0.0-beta.14, when a compressed archive is uploaded to a container via `PUT /containers/{id}/archive` or piped through `docker cp -`, the daemon resolves decompression binaries (such as `xz` or `unpigz`) from the container's filesystem rather than the host's due to incorrect ordering of operations. A malicious container image containing a trojanized decompression binary can achieve arbitrary code execution with full daemon privileges, including host root UID and unrestricted capabilities, when a user uploads a compressed (xz or gzip) archive into that container. This issue is fixed in Docker Engine 29.5.1 and moby/moby v2.0.0-beta.14. Workarounds include only running containers from trusted images, using authorization plugins to restrict access to the `PUT /containers/{id}/archive` endpoint, and avoiding piping compressed archives into containers created from untrusted images
via cve_org
| Version | Type | Source | Base | Exp | Imp |
|---|---|---|---|---|---|
| 3.1 | Primary | cve.org | 7.5 | — | — |
| 3.1 | Primary | cve.org | 7.5 | — | — |
| 3.1 | Primary | cve.org | 7.5 | — | — |
| 3.1 | Primary | cve.org | 7.5 | — | — |
| 3.1 | Primary | cve.org | 7.5 | — | — |
| 3.1 | Primary | cve.org | 7.5 | — | — |
| 3.1 | Primary | cve.org | 7.5 | — | — |
| 3.1 | Primary | cve.org | 7.5 | — | — |
| 3.1 | Primary | cve.org | 7.5 | — | — |
| 3.1 | Primary | cve.org | 7.5 | — | — |
| 3.1 | Primary | cve.org | 7.5 | — | — |
| 3.1 | Primary | cve.org | 7.5 | — | — |
| 3.1 | Primary | cve.org | 7.5 | — | — |
| 3.1 | Primary | cve.org | 7.5 | — | — |
| 3.1 | Primary | cve.org | 7.5 | — | — |
| 3.1 | Primary | cve.org | 7.5 | — | — |
| 3.1 | Primary | cve.org | 7.5 | — | — |
| 3.1 | Primary | cve.org | 7.5 | — | — |
| 3.1 | Primary | cve.org | 7.5 | — | — |
| 3.1 | Primary | cve.org | 7.5 | — | — |
| 3.1 | Primary | cve.org | 7.5 | — | — |
| 3.1 | Primary | cve.org | 7.5 | — | — |
| 3.1 | Primary | cve.org | 7.5 | — | — |
| 3.1 | Primary | cve.org | 7.2 | — | — |
| 3.1 | Primary | cve.org | 7.2 | — | — |
| 3.1 | Primary | cve.org | 7.2 | — | — |
| 3.1 | Primary | cve.org | 7.2 | — | — |
| 3.1 | Primary | cve.org | 7.2 | — | — |
| 3.1 | Primary | cve.org | 7.2 | — | — |
| 3.1 | Primary | cve.org | 7.2 | — | — |
| 3.1 | Primary | cve.org | 7.2 | — | — |
| 3.1 | Primary | cve.org | 7.2 | — | — |
| 3.1 | Primary | cve.org | 7.2 | — | — |
| 3.1 | Primary | cve.org | 7.2 | — | — |
| 3.1 | Primary | cve.org | 7.2 | — | — |
| 3.1 | Primary | cve.org | 7.2 | — | — |
| 3.1 | Primary | cve.org | 7.2 | — | — |
| 3.1 | Primary | cve.org | 7.2 | — | — |
| 3.1 | Primary | cve.org | 7.2 | — | — |
| 3.1 | Primary | cve.org | 7.2 | — | — |
| 3.1 | Primary | cve.org | 7.2 | — | — |
| 3.1 | Primary | cve.org | 7.2 | — | — |
| 3.1 | Primary | cve.org | 7.2 | — | — |
| 3.1 | Primary | cve.org | 7.2 | — | — |
| 3.1 | Primary | cve.org | 7.2 | — | — |
| 3.1 | Primary | cve.org | 7.2 | — | — |
| 3.1 | Primary | cve.org | 7.2 | — | — |
| 3.1 | Primary | cve.org | 7.2 | — | — |
| 3.1 | Secondary | NVD | 7.5 | 0.8 | 6.0 |
| 3.1 | Secondary | NVD | 7.2 | 0.8 | 5.8 |
| 3.1 | Secondary | ENISA EUVD | 7.2 | — | — |
| 3.1 | Secondary | GHSA | 7.2 | — | — |