Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-47659 | 8.7 HIGH | Pathling has path traversal in $import-pnp manifest that enables read-capable SSRF via /jo |
| CVE-2026-47660 | 8.7 HIGH | Pathling: Explicit oauthMetadataUrl in bulk-submit allows OAuth client credential exfiltra |
| CVE-2026-47662 | 8.7 HIGH | Pathling $bulk-submit allows bearer-token exfiltration and persistent warehouse poisoning |
| CVE-2026-47663 | 8.7 HIGH | Pathling: Typed CRUD/search/batch providers can lead to server-wide PHI exfiltration and c |
| CVE-2026-47664 | 8.6 HIGH | Pathling: $import-pnp operation enables authenticated SSRF, credential leakage, and wareho |
No comments yet