CNNVD-202507-2707 Information

CNNVD ID

CNNVD-202507-2707

CVE-2025-51868

  • CNNVD Published: 2025-07-21

Description (Chinese)

Dippy是Dippy公司的一个AI聊天网站。 Dippy v2版本存在安全漏洞,该漏洞源于对conversation_id参数访问控制不当,可能导致敏感信息泄露。

Description (English)

Dippy is an AI chat site for Dippy. There is a security loophole in Dippy v2, which stems from inadequate control over access to parameters and may lead to the disclosure of sensitive information.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Dippy

Published

2025-07-21

Last Modified

2026-02-24

References

https://github.com/Secsys-FDU/CVE-2025-51868 https://access.redhat.com/security/cve/cve-2025-51868

Share on: