CNNVD-202601-830 Information

CNNVD ID

CNNVD-202601-830

CVE-2025-64422

  • CNNVD Published: 2026-01-05

Description (Chinese)

Coolify是coolLabs开源的一个开源和自托管的 Heroku/Netlify/Vercel 替代品。 Coolify 4.0.0-beta.434版本存在安全漏洞,该漏洞源于登录端点速率限制可被绕过,可能导致暴力破解攻击。

Description (English)

Coolify is an open-source and self-hosted Heroku/Netlift/Vercel alternative to the coolLabs open source. There is a security loophole in the Coolify 4.0.0-beta 434 version, which stems from the fact that the login point-rate limit can be bypassed and can lead to violent deciphering attacks.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

coolLabs

Published

2026-01-05

Last Modified

2026-02-24

References

https://github.com/coollabsio/coolify/security/advisories/GHSA-688j-rm43-5r8x

Share on: