CNNVD-202509-338 Information

CNNVD ID

CNNVD-202509-338

CVE-2025-26210

  • CNNVD Published: 2025-09-03

Description (Chinese)

DeepSeek R1是中国深度求索(DeepSeek)公司的一款大语言模型与AI技术平台。 DeepSeek R1 V3.1及之前版本存在安全漏洞,该漏洞源于未指定输入字段容易受到跨站脚本攻击,可能导致执行任意代码。

Description (English)

DeepSeek R1 is a large-language model and AI technology platform for DeepSeek in China. There is a security loophole in DeepSeek R1 V3.1 and earlier versions, which stems from the fact that unspecified input fields are vulnerable to cross-site script attacks and may lead to the implementation of arbitrary codes.

Hazard Level

Low

Vulnerability Type

其他

Affected Vendor

深度求索

Published

2025-09-03

Last Modified

2026-02-24

References

http://deepseek.com https://youtu.be/IgQwy52FVT4 https://hackmd.io/@MrqrFIlhQFi7vUwkqbrXDw/deepseek https://deepseek.com https://access.redhat.com/security/cve/cve-2025-26210

Share on: