高度な大規模言語モデル技術を使用していますが、出力には不正確または古い情報が含まれる可能性があります。Shenlongはデータの正確性を確保するよう努めていますが、実際の状況に基づいて検証・判断してください。
| # | POC説明 | ソースリンク | Shenlongリンク |
|---|---|---|---|
| 1 | 9Router <= 0.4.36 middleware only guards 8 explicitly listed routes, leaving /api/cli-tools/* and /api/mcp/* entirely unauthenticated. An attacker can POST to /api/cli-tools/cowork-settings to register a custom MCP plugin with attacker-controlled command and args stored verbatim into globalThis, then GET /api/mcp/{name}/sse to trigger spawn() with the stored command resulting in unauthenticated remote code execution. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2026/CVE-2026-46339.yaml | POC詳細 |
| CVE-2026-49352 | 9.8 CRITICAL | 9Router: Hardcoded Default fallback JWT Secret Allows Authentication Bypass |
| CVE-2026-62312 | 8.8 HIGH | 9Router: Authenticated RCE via Unvalidated MCP Plugin Arguments |
| CVE-2026-49353 | 7.5 HIGH | 9Router: Local-Only Access Gate Bypass in 9router via Host Header SpoofING |
| CVE-2026-56678 | 6.4 MEDIUM | 9Router: Kiro region injection allows authenticated SSRF with Authorization header forward |
| CVE-2026-56679 | 9Router: Mass assignment in PATCH /api/settings allows authenticated authorization downgra |
まだコメントはありません