CNNVD-202508-2726 Information

CNNVD ID

CNNVD-202508-2726

CVE-2024-53494

  • CNNVD Published: 2025-08-22

Description (Chinese)

Kyrie Blog是caozongpeng个人开发者的一个个人博客系统。 Kyrie Blog 1.0.0版本存在安全漏洞,该漏洞源于preHandle函数访问控制不当,可能导致未授权访问敏感组件。

Description (English)

Kyrie Blog is a personal blog system for caozongping personal developers. There is a security loophole in the version Kyrie Blog 1.0.0, which stems from inadequate access controls in the PreHandle function, which may lead to unauthorized access to sensitive components.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

个人开发者

Published

2025-08-22

Last Modified

2026-02-24

References

https://github.com/caozongpeng/SpringBootBlog/issues/23 https://gitee.com/fushuling/cve/blob/master/CVE-2024-53494.md https://nvd.nist.gov/vuln/detail/CVE-2024-53494

Share on: