CVE-2025-60355

9.8CRITICAL

zhangyd-c OneBlog before 2.3.9 was vulnerable to SSTI (Server-Side Template Injection) via FreeMarker templates.

发布于: 10/28/2025更新于: 1/8/2026

描述

zhangyd-c OneBlog before 2.3.9 was vulnerable to SSTI (Server-Side Template Injection) via FreeMarker templates.

AI分析AI驱动

受影响产品

zhydoneblog

参考资料