CNNVD-202510-1317 Information

CNNVD ID

CNNVD-202510-1317

CVE-2025-10282

  • CNNVD Published: 2025-10-09

Description (Chinese)

BBOT是Black Lantern Security开源的一个递归互联网扫描器。 BBOT存在安全漏洞,该漏洞源于恶意格式化的git URL可能导致GitLab API密钥泄露到攻击者控制的服务器。

Description (English)

BBOT is a back-to-back Internet scanner for Black Lantern Security. BBOT has a security loophole, which stems from maliciously formatted git URLs that could lead to the leaking of GitLab API keys to the attacker-controlled servers.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Black Lantern Security

Published

2025-10-09

Last Modified

2026-02-24

References

https://blog.blacklanternsecurity.com/p/bbot-security-advisory-gitdumper https://access.redhat.com/security/cve/cve-2025-10282

Share on: