Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Apache Answer: XSS in AI Answer Rendering
Vulnerability Description
Improper Neutralization of Alternate XSS Syntax vulnerability in Apache Answer. This issue affects Apache Answer: through 2.0.0. AI-generated response content was rendered in the browser without proper sanitization, allowing malicious scripts to be executed when the content was viewed. Users are recommended to upgrade to version 2.0.1, which fixes the issue.
CVSS Information
N/A
Vulnerability Type
替代XSS语法转义处理不恰当
Vulnerability Title
Apache Answer 安全漏洞
Vulnerability Description
Apache Answer是美国阿帕奇(Apache)基金会的一个社区平台。 Apache Answer 2.0.0及之前版本存在安全漏洞,该漏洞源于对备用XSS语法中和不当,导致AI生成内容在浏览器中渲染时未正确清理,可能允许恶意脚本执行。
CVSS Information
N/A
Vulnerability Type
N/A