PoC-in-GitHub/2025/CVE-2025-56815.json
2025-10-09 15:40:43 +09:00

33 lines
No EOL
1.3 KiB
JSON

[
{
"id": 1063294282,
"name": "CVE-2025-56815",
"full_name": "xiaoxiaoranxxx\/CVE-2025-56815",
"owner": {
"login": "xiaoxiaoranxxx",
"id": 78064939,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/78064939?v=4",
"html_url": "https:\/\/github.com\/xiaoxiaoranxxx",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/xiaoxiaoranxxx\/CVE-2025-56815",
"description": "Datart 1.0.0-rc.3 is vulnerable to Directory Traversal in the POST \/viz\/image interface, since the server directly uses MultipartFile.transferTo() to save the uploaded file to a path controllable by the user, and lacks strict verification of the filename.",
"fork": false,
"created_at": "2025-09-24T12:34:31Z",
"updated_at": "2025-10-09T02:43:25Z",
"pushed_at": "2025-09-24T12:54:52Z",
"stargazers_count": 1,
"watchers_count": 1,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 1,
"score": 0,
"subscribers_count": 0
}
]