CNNVD-202601-1576 Information

CNNVD ID

CNNVD-202601-1576

CVE-2026-21868

  • CNNVD Published: 2026-01-08

Description (Chinese)

Flag Forge是FlagForge开源的一个易于使用的CTF平台。 Flag Forge 2.3.2及之前版本存在安全漏洞,该漏洞源于用户资料API端点存在正则表达式拒绝服务问题。

Description (English)

Flag Forge is an easy-to-use CTF platform for the FlagForge open source. There is a security gap in the Flag Forge 2.3.2 and previous versions, which stems from the problem of regular expression of rejection of service at the API endpoint of user information.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

FlagForge

Published

2026-01-08

Last Modified

2026-02-24

References

https://github.com/FlagForgeCTF/flagForge/security/advisories/GHSA-949h-9824-xmcx

Patch

https://github.com/FlagForgeCTF/flagForge/releases

Share on: