CNNVD-202601-4755 Information

CNNVD ID

CNNVD-202601-4755

CVE-2026-1520

  • CNNVD Published: 2026-01-28

Description (Chinese)

RethinkDB是RethinkDB开源的一个数据库。 rethinkdb 2.4.3及之前版本存在代码注入漏洞,该漏洞源于对Secondary Index Handler组件的操作不当,可能导致跨站脚本攻击。

Description (English)

RethinkDB is an open-source database for RethinkDB. Rethinkdb 2.4.3 and previous versions had a code-infusion loophole, which resulted from the improper operation of the Secondary Index Handler component and could result in a cross-site script attack.

Hazard Level

Critical

Vulnerability Type

代码注入

Affected Vendor

RethinkDB

Published

2026-01-28

Last Modified

2026-02-24

References

https://github.com/59lab/dbdb/blob/main/There%20is%20a%20cross-site%20scripting(XSS)%20vulnerability%20in%20the%20rethinkdb%20database.md#poc https://vuldb.com/?submit.738312 https://vuldb.com/?id.343191 https://vuldb.com/?ctiid.343191 https://access.redhat.com/security/cve/cve-2026-1520

Share on: