Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-77rj-h8wx-6cgq

Опубликовано: 16 сент. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 7
CVSS3: 7.3

Описание

Nuclei versions before 3.11.1 cache template signature verification based only on file modification time without content checksums. Attackers can replace verified templates with unsigned malicious content and restore the original modification time to bypass signature checks and execute arbitrary operating system commands.

Nuclei versions before 3.11.1 cache template signature verification based only on file modification time without content checksums. Attackers can replace verified templates with unsigned malicious content and restore the original modification time to bypass signature checks and execute arbitrary operating system commands.

7 High

CVSS4

7.3 High

CVSS3

Дефекты

CWE-347

Связанные уязвимости

CVSS3: 7.3
nvd
1 день назад

Nuclei versions before 3.11.1 cache template signature verification based only on file modification time without content checksums. Attackers can replace verified templates with unsigned malicious content and restore the original modification time to bypass signature checks and execute arbitrary operating system commands.

7 High

CVSS4

7.3 High

CVSS3

Дефекты

CWE-347