Lobe Chat is an open-source artificial intelligence chat framework. Prior to version 1.19.13, server-side request forgery protection implemented in src/app/api/proxy/route.ts does not consider redirec ...
Continue ReadingSeptember 24, 2024
Summary SSRF protection implemented in https://github.com/lobehub/lobe-chat/blob/main/src/app/api/proxy/route.ts does not consider redirect and could be bypassed when attacker provides external malici ...
Continue ReadingSeptember 23, 2024
ViciDial Exploit Suite Author: Havok Project URL: ViciDial Exploit Suite Overview The ViciDial Exploit Suite is a comprehensive toolset designed for penetration testers and security researchers target ...
Continue ReadingSeptember 23, 2024
Vulnerability of ANGLE library in Mozilla Firefox, Firefox ESR and Thunderbird email client browsers is related to writing beyond buffer boundaries. Exploitation of the vulnerability could allow an at ...
Continue ReadingSeptember 23, 2024
Summary SSRF protection implemented in https://github.com/lobehub/lobe-chat/blob/main/src/app/api/proxy/route.ts does not consider redirect and could be bypassed when attacker provides external malici ...
Continue ReadingSeptember 23, 2024
Lobe Chat is an open-source artificial intelligence chat framework. Prior to version 1.19.13, server-side request forgery protection implemented in src/app/api/proxy/route.ts does not consider redirec ...
Continue ReadingSeptember 23, 2024
Lobe Chat is an open-source artificial intelligence chat framework. Prior to version 1.19.13, server-side request forgery protection implemented in src/app/api/proxy/route.ts does not consider redirec ...
Continue ReadingSeptember 23, 2024
Lobe Chat is an open-source artificial intelligence chat framework. Prior to version 1.19.13, server-side request forgery protection implemented in src/app/api/proxy/route.ts does not consider redirec ...
Continue ReadingSeptember 23, 2024
Back to Main