Arbitrary File Read Vulnerability in Gaizhenbiao Chuanhuchatgpt
CVE-2024-7962
What is CVE-2024-7962?
An arbitrary file read vulnerability exists in Gaizhenbiao's Chuanhuchatgpt product due to inadequate validation mechanisms when loading prompt template files. This issue permits attackers to read any file that aligns with specific formatting criteria, which includes using absolute paths. Notably, files attempted to be read cannot have a .json extension, and all lines except the first must contain commas. Such vulnerabilities have the potential to expose sensitive information that resides in format-compliant files, which can include critical data such as account credentials, code, and log files.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
References
CVSS V3.1
Timeline
Vulnerability published
