跳转到帖子

FreeBSD: VID-587ED8AC-5957-11EF-854A-001E676BF734: OpenHAB CometVisu addon -- Multiple vulnerabilities

recommended_posts

发布于
  • Members

FreeBSD: VID-587ED8AC-5957-11EF-854A-001E676BF734: OpenHAB CometVisu addon -- Multiple vulnerabilities

Severity
4
CVSS
(AV:L/AC:M/Au:N/C:P/I:P/A:P)
Published
08/09/2024
Created
08/14/2024
Added
08/13/2024
Modified
08/13/2024

Description

OpenHAB reports:

This patch release addresses the following security advisories:

SSRF/XSS (CometVisu) - GHSA-v7gr-mqpj-wwh3

Sensitive information disclosure (CometVisu) - GHSA-3g4c-hjhr-73rj

RCE through path traversal (CometVisu) - GHSA-f729-58x4-gqgf

Path traversal (CometVisu) - GHSA-pcwp-26pw-j98w

All of these are related to the CometVisu add-on for openHAB - if you are a user of CometVisu, we strongly recommend to upgrade your system to openHAB 4.2.1 in order to fix those vulnerabilities.

Solution(s)

  • freebsd-upgrade-package-openhab-addons
  • 查看数 695
  • 已创建
  • 最后回复

参与讨论

你可立刻发布并稍后注册。 如果你有帐户,立刻登录发布帖子。

游客
回帖…