CNNVD-202601-2777 Information

CNNVD ID

CNNVD-202601-2777

CVE-2021-47835

  • CNNVD Published: 2026-01-16

Description (Chinese)

Freeter是Freeter开源的一个工作助手软件。 Freeter 1.2.1版本存在安全漏洞,该漏洞源于自定义部件标题和文件存在存储型跨站脚本,可能导致远程代码执行。

Description (English)

Freeter is a working assistant at Freeter Open Source. Freeter 1.2.1 has a security loophole, which stems from the existence of a storage cross-site script for custom widget titles and files, which may lead to remote code execution.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

Freeter

Published

2026-01-16

Last Modified

2026-02-24

References

https://freeter.io/ https://imgur.com/a/iBuKWm4 https://www.exploit-db.com/exploits/49833 https://www.vulncheck.com/advisories/freeter-persistent-cross-site-scripting

Patch

https://freeter.io/

Share on: