| 概要 | An improper input validation, together with an overly permissive default CORS configuration in Open Notebook v1.8.1 allows remote attacker to trick a legitimate user to alter or delete arbitrary database entries via specially crafted malicious URL. Depending on the deployment, data exfiltration is also possible. |
|---|---|
| 公表日 | 2026年5月7日20:16 |
| 登録日 | 2026年5月8日4:09 |
| 最終更新日 | 2026年5月7日23:51 |