CNNVD-202512-586 Information

CNNVD ID

CNNVD-202512-586

CVE-2025-11222

  • CNNVD Published: 2025-12-04

Description (Chinese)

Central Dogma是一款基于Git、ZooKeeper和HTTP/2的开源服务配置版本控制存储库。 Central Dogma 0.78.0之前版本存在安全漏洞,该漏洞源于开放重定向,可能导致钓鱼攻击和凭据窃取。

Description (English)

Central Dogma is an open source service configuration control repository based on Git, ZooKeeper and HTTP/2. Prior to Central Dogma 0.78.0, there was a security loophole, which stemmed from open re-direction, which could lead to fishing attacks and theft on evidence.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

LINE

Published

2025-12-04

Last Modified

2026-02-24

References

https://github.com/line/centraldogma/security/advisories/GHSA-4hr2-xf7w-jf76 https://access.redhat.com/security/cve/cve-2025-11222

Patch

https://github.com/line/centraldogma

Share on: