[ { "id": 892465914, "name": "cve-2024-5452-poc", "full_name": "XiaomingX\/cve-2024-5452-poc", "owner": { "login": "XiaomingX", "id": 5387930, "avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/5387930?v=4", "html_url": "https:\/\/github.com\/XiaomingX", "user_view_type": "public" }, "html_url": "https:\/\/github.com\/XiaomingX\/cve-2024-5452-poc", "description": "此漏洞的根本原因是**深度差异库(deepdiff)**在反序列化用户输入时,未正确处理双下划线(dunder)属性。 PyTorch Lightning 使用 deepdiff.Delta 对象根据前端操作修改应用状态,设计目标是仅允许特定状态变量的修改。", "fork": false, "created_at": "2024-11-22T06:56:12Z", "updated_at": "2024-12-08T18:37:31Z", "pushed_at": "2024-11-22T06:56:32Z", "stargazers_count": 2, "watchers_count": 2, "has_discussions": false, "forks_count": 0, "allow_forking": true, "is_template": false, "web_commit_signoff_required": false, "topics": [], "visibility": "public", "forks": 0, "watchers": 2, "score": 0, "subscribers_count": 1 } ]