CNNVD-202601-018 Information

CNNVD ID

CNNVD-202601-018

CVE-2025-68272

  • CNNVD Published: 2026-01-01

Description (Chinese)

Signal K Server是Signal K开源的一个船用中央服务器。 Signal K Server 2.19.0之前版本存在安全漏洞,该漏洞源于未经验证的攻击者可通过访问请求端点泛洪攻击导致服务器崩溃,可能导致拒绝服务攻击。

Description (English)

Signal K Server is a central shipping server for Signal K Open Source. There was a security loophole in the pre-Signal K Server 2.19.0 version, which stemmed from the collapse of the server through an uncertified flood attack at the end of the request for access, which could lead to a denial of service.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

Signal K

Published

2026-01-01

Last Modified

2026-02-24

References

https://github.com/SignalK/signalk-server/releases/tag/v2.19.0 https://github.com/SignalK/signalk-server/security/advisories/GHSA-7rqc-ff8m-7j23

Patch

https://github.com/SignalK/signalk-server/releases

Share on: