LyLme spage存在SSRF漏洞(CVE-2024-36675)

2025-07-18 LyLme spage PoC No

Description

LyLme spagev1.9.5容易通过apply/index.php中的url参数受到服务器端请求伪造(SSRF)的攻击。攻击者可以迫使服务器发出任意请求,从而可能访问内部资源。

PoC

None yet. Search at https://trap.biu.life/?ref=rss

References

Related Vulnerabilities