CNNVD-202601-4314 Information

CNNVD ID

CNNVD-202601-4314

CVE-2026-1406

  • CNNVD Published: 2026-01-25

Description (Chinese)

BootDo是lcg0124个人开发者的一个后台管理系统框架。 BootDo存在输入验证错误漏洞,该漏洞源于对AccessControlFilter.java文件中Hostname参数的操作,可能导致开放重定向。

Description (English)

Bootdo is a back-office management system framework for lcg0124 individual developers. Bootdo has an input validation error loophole, which results from the operation of the Hostname parameter in the AccessControlFilter.java file and may lead to open redirection.

Hazard Level

Critical

Vulnerability Type

输入验证错误

Affected Vendor

个人开发者

Published

2026-01-25

Last Modified

2026-02-24

References

https://vuldb.com/?ctiid.342794 https://vuldb.com/?id.342794 https://vuldb.com/?submit.736271 https://github.com/webzzaa/CVE-/issues/5 https://access.redhat.com/security/cve/cve-2026-1406

Share on: