CNNVD-202601-1898 Information

CNNVD ID

CNNVD-202601-1898

CVE-2023-54331

  • CNNVD Published: 2026-01-13

Description (Chinese)

Outline是Outline开源的一个知识库。 Outline 1.6.0版本存在代码问题漏洞,该漏洞源于未加引号的服务路径,可能导致本地攻击者以提升的系统权限执行任意代码。

Description (English)

Outline is an open-source knowledge base for Outline. There is a code loophole in release Outline 1.6.0, which originates from service paths without quotation marks, which may lead local attackers to enforce arbitrary codes with enhanced system privileges.

Hazard Level

Medium

Vulnerability Type

代码问题

Affected Vendor

Outline

Published

2026-01-13

Last Modified

2026-02-24

References

https://getoutline.org/ https://www.exploit-db.com/exploits/51128 https://www.vulncheck.com/advisories/outline-unquoted-service-path

Share on: