Seaweedfs

Seaweedfs

13 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.21%
  • Veröffentlicht 30.06.2026 15:57:36
  • Zuletzt bearbeitet 14.07.2026 22:17:28

SeaweedFS before 4.30 reflects the callback query parameter verbatim into responses served with Content-Type application/javascript in the shared writeJson helper (weed/server/common.go), with no callback-name validation, no X-Content-Type-Options: n...

Exploit
  • EPSS 0.39%
  • Veröffentlicht 25.06.2026 18:41:19
  • Zuletzt bearbeitet 29.06.2026 21:21:10

SeaweedFS is a distributed storage system for object storage (S3), file systems, and Iceberg tables. Prior to 4.30, the S3 API gateway and the Iceberg REST catalog gateway construct their routers with mux.NewRouter().SkipClean(true). With path cleani...

Exploit
  • EPSS 0.25%
  • Veröffentlicht 16.05.2025 00:00:00
  • Zuletzt bearbeitet 17.06.2025 14:09:04

seaweedfs v3.68 was discovered to contain a SQL injection vulnerability via the component /abstract_sql/abstract_sql_store.go.