CNNVD-202601-2617 Information

CNNVD ID

CNNVD-202601-2617

CVE-2021-47776

  • CNNVD Published: 2026-01-15

Description (Chinese)

Umbraco CMS是丹麦Umbraco公司的一个内容管理系统。 Umbraco CMS 8.14.1版本存在代码问题漏洞,该漏洞源于对baseUrl参数操作不当,可能导致服务端请求伪造。

Description (English)

Umbraco CMS is a content management system for the Danish company Umbraco. Version 8.14.1 of Umbraco CMS has a code problem loophole, which stems from the improper operation of the BaseUrl parameter, which may lead to the forgery of service-level requests.

Hazard Level

High

Vulnerability Type

代码问题

Affected Vendor

Umbraco

Published

2026-01-15

Last Modified

2026-02-24

References

https://our.umbraco.com/ https://releases.umbraco.com/all-releases https://www.exploit-db.com/exploits/50462

Patch

https://releases.umbraco.com/all-releases

Share on: