Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 2

Количество 2

nvd логотип

CVE-2026-41646

3 месяца назад

Nuclei is a vulnerability scanner built on a simple YAML-based DSL. From version 3.0.0 to before version 3.8.0, a vulnerability in Nuclei's JavaScript protocol runtime allows JavaScript templates to read local .js and .json files through the require() function, bypassing the default local file access restriction. This issue has been patched in version 3.8.0.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-29rg-wmcw-hpf4

3 месяца назад

Nuclei: Local File Read via require() Module Loader Bypass

CVSS3: 5.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2026-41646

Nuclei is a vulnerability scanner built on a simple YAML-based DSL. From version 3.0.0 to before version 3.8.0, a vulnerability in Nuclei's JavaScript protocol runtime allows JavaScript templates to read local .js and .json files through the require() function, bypassing the default local file access restriction. This issue has been patched in version 3.8.0.

CVSS3: 5.5
0%
Низкий
3 месяца назад
github логотип
GHSA-29rg-wmcw-hpf4

Nuclei: Local File Read via require() Module Loader Bypass

CVSS3: 5.5
0%
Низкий
3 месяца назад

Уязвимостей на страницу