Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-39361 | 8.8 HIGH | Metabase vulnerable to Remote Code Execution via H2 |
| CVE-2022-39358 | 6.5 MEDIUM | Metabase vulnerable to circumvention of Locked parameter in Signed Embedding |
| CVE-2022-39359 | 6.5 MEDIUM | Metabase's GeoJSON validation doesn't prevent redirects to blocked URLs |
| CVE-2022-39360 | 6.5 MEDIUM | Metabase SSO users able to circumvent IdP login by doing password reset |
No comments yet