CNNVD-202508-410 Information

CNNVD ID

CNNVD-202508-410

CVE-2025-54872

  • CNNVD Published: 2025-08-06

Description (Chinese)

Onion Site Template是Vessel9817个人开发者的一个自托管示例。 Onion Site Template存在信任管理问题漏洞,该漏洞源于包含固定tor镜像,可能导致网站被入侵。

Description (English)

Onion Site Template is a self-hosted example of Vessel 9817 individual developers. Onion Site Template has a trust management loophole, which stems from the presence of a fixed tor image, which could lead to an invasion of the website.

Hazard Level

High

Vulnerability Type

信任管理问题

Affected Vendor

个人开发者

Published

2025-08-06

Last Modified

2026-02-24

References

https://github.com/Vessel9817/onion-site-template/commit/bc9ba0fd8cc7fbb3abc6759b351885a4501bce84 https://github.com/Vessel9817/onion-site-template/security/advisories/GHSA-mj8m-c8w9-rw55 https://access.redhat.com/security/cve/cve-2025-54872

Share on: