CNNVD-202601-2617 Information
Jan 15, 2026
cve
CNNVD ID
CNNVD-202601-2617
Related CVE
- CNNVD Published: 2026-01-15
Description (Chinese)
Umbraco CMS是丹麦Umbraco公司的一个内容管理系统。 Umbraco CMS 8.14.1版本存在代码问题漏洞,该漏洞源于对baseUrl参数操作不当,可能导致服务端请求伪造。
Description (English)
Umbraco CMS is a content management system for the Danish company Umbraco. Version 8.14.1 of Umbraco CMS has a code problem loophole, which stems from the improper operation of the BaseUrl parameter, which may lead to the forgery of service-level requests.
Hazard Level
High
Vulnerability Type
代码问题
Affected Vendor
Umbraco
Published
2026-01-15
Last Modified
2026-02-24
References
https://our.umbraco.com/ https://releases.umbraco.com/all-releases https://www.exploit-db.com/exploits/50462
Patch
https://releases.umbraco.com/all-releases
Share on: