References https://www.cgu.edu.tw/ic/Subject/Detail/69486?nodeId=12683 https://www.twcert.org.tw/tw/lp-132-1-2-60.html https://ocbettw.com/__s/lis/tc/news/1-90084-n https://www.twcert.org.tw/newepaper/lp-151-3-5-20.html https://www.openinfosec.com/zh/shareArticle/content/1219 https://lic.nuk.edu.tw/p/406-1012-90053,r73.php?Lang=zh-tw https://www.twcert.org.tw/tw/lp-132-1-5-20.html https://www.cvedetails.com/cve/CVE-2025-8322/ https://cisnet.cyut.edu.tw/
Related VulnerabilitiesPoCCVE-2026-27454: Discourse <=2026.2.0 - Hidden Post Revision Disclosure via revert_to Authorization BypassPoCCVE-2026-53595: FreeScout < 1.8.224 - Invite Hash Authorization Bypass鎧應科技|CAYIN CMS-WS/CMS-SE - Missing AuthenticationPoCCVE-2025-14047: User Frontend <= 4.2.4 - Missing Authorization to Unauthenticated Attachment Deletion網韻資訊|NewSiteServer (NSS) 新式校園網站系統 - Missing AuthenticationPoCCVE-2026-34976: Dgraph <=v25.3.0 - Admin Mutation Missing AuthorizationPoCCVE-2026-61808: LightRAG <= 1.5.4 - Missing Authentication葆光系統|POS餐飲系統 - Missing AuthenticationPoCCVE-2026-1830: Quick Playground <= 1.3.1 - Missing Authorization to Unauthenticated Arbitrary File UploadPoCCVE-2026-22683: Windmill < 1.603.3 - Operator Authorization BypassPoCCVE-2026-3335: Canto <= 3.1.1 - Missing Authorization to Unauthenticated File UploadPoCCVE-2026-42569: phpVMS < 7.0.6 - Legacy Importer Authorization Bypass