CNNVD-202602-1887 Information

CNNVD ID

CNNVD-202602-1887

CVE-2024-26478

  • CNNVD Published: 2026-02-11

Description (Chinese)

statping-ng是statping-ng开源的一个服务器监控软件。 statping-ng 0.91.0版本存在安全漏洞,该漏洞源于对/api/users端点的特制请求处理不当,可能导致敏感信息泄露。

Description (English)

statping-ng is a server monitoring software for the statping-ng open source. There is a security loophole in version 0.91.0 of the status-ng 0.901. This loophole arises from inappropriate handling of ad hoc requests to/api/user endpoints, which may lead to the disclosure of sensitive information.

Vulnerability Type

其他

Affected Vendor

statping-ng

Published

2026-02-11

Last Modified

2026-02-24

References

https://github.com/Ev3rR3d/Statping_Poc https://github.com/Ev3rR3d/Statping_Poc/tree/main/CVE-2024-26478 https://github.com/statping-ng/statping-ng https://statping-ng.github.io/

Patch

https://statping-ng.github.io/install.html

Share on: