更新: 319 个文件 - 2026-03-31 03:06:10

这个提交包含在:
hao
2026-03-31 03:06:11 -07:00
父节点 e8a083bc68
当前提交 5beac32c48
修改 319 个文件,包含 14120 行新增3144 行删除

查看文件

@@ -12,7 +12,7 @@
- 已实证(synthetic): `0`
- 阻塞数: `0`
- 待人工/缺浏览器证据: `81`
- 最近渲染时间: `2026-03-30T09:18:25+00:00`
- 最近渲染时间: `2026-03-31T09:18:20+00:00`
## 目标约束

查看文件

@@ -12,7 +12,7 @@
- 已实证(synthetic): `0`
- 阻塞数: `0`
- 待人工/缺浏览器证据: `89`
- 最近渲染时间: `2026-03-30T09:18:25+00:00`
- 最近渲染时间: `2026-03-31T09:18:20+00:00`
## 目标约束

查看文件

@@ -12,7 +12,7 @@
- 已实证(synthetic): `0`
- 阻塞数: `0`
- 待人工/缺浏览器证据: `15`
- 最近渲染时间: `2026-03-30T09:18:25+00:00`
- 最近渲染时间: `2026-03-31T09:18:20+00:00`
## 目标约束

查看文件

@@ -12,7 +12,7 @@
- 已实证(synthetic): `0`
- 阻塞数: `0`
- 待人工/缺浏览器证据: `100`
- 最近渲染时间: `2026-03-30T09:18:25+00:00`
- 最近渲染时间: `2026-03-31T09:18:20+00:00`
## 目标约束

查看文件

@@ -12,7 +12,7 @@
- 已实证(synthetic): `0`
- 阻塞数: `0`
- 待人工/缺浏览器证据: `27`
- 最近渲染时间: `2026-03-30T09:18:25+00:00`
- 最近渲染时间: `2026-03-31T09:18:20+00:00`
## 目标约束

查看文件

@@ -12,7 +12,7 @@
- 已实证(synthetic): `0`
- 阻塞数: `0`
- 待人工/缺浏览器证据: `114`
- 最近渲染时间: `2026-03-30T09:18:25+00:00`
- 最近渲染时间: `2026-03-31T09:18:20+00:00`
## 目标约束
@@ -34,8 +34,8 @@
| 标题 | 严重度 | 案例状态 | 实证状态 | 实证方式 | 来源置信度 | 更新时间 | 案例页 |
|------|--------|----------|----------|----------|------------|----------|--------|
| PrestaShop has multiple stored XSS vulnerabilities via unprotected Template variables | `low` | `generated` | `triage-manual` | `synthetic` | `ecosystem-authority` | `2026-03-27T21:52:37.272493Z` | [link](/Users/x/websafe/07-framework-security/ecommerce/prestashop/cases/prestashop-cve-2026-33673.md) |
| PrestaShop: Improper Use of Validation Framework | `low` | `generated` | `triage-manual` | `synthetic` | `ecosystem-authority` | `2026-03-27T21:52:10.658795Z` | [link](/Users/x/websafe/07-framework-security/ecommerce/prestashop/cases/prestashop-cve-2026-33674.md) |
| PrestaShop has multiple stored XSS vulnerabilities via unprotected Template variables | `low` | `generated` | `triage-manual` | `synthetic` | `ecosystem-authority` | `2026-03-30T12:26:07.105030Z` | [link](/Users/x/websafe/07-framework-security/ecommerce/prestashop/cases/prestashop-cve-2026-33673.md) |
| PrestaShop: Improper Use of Validation Framework | `low` | `generated` | `triage-manual` | `synthetic` | `ecosystem-authority` | `2026-03-30T12:26:06.049752Z` | [link](/Users/x/websafe/07-framework-security/ecommerce/prestashop/cases/prestashop-cve-2026-33674.md) |
| CVE-2020-5294 | `medium` | `triage` | `triage-manual` | `synthetic` | `official` | `2024-11-21T05:33:51.140` | - |
| CVE-2020-5273 | `medium` | `triage` | `triage-manual` | `synthetic` | `official` | `2024-11-21T05:33:48.777` | - |
| CVE-2020-5266 | `medium` | `triage` | `triage-manual` | `synthetic` | `official` | `2024-11-21T05:33:47.980` | - |

查看文件

@@ -4,7 +4,7 @@ system_id: "prestashop"
category: "ecommerce"
advisory_mode: "core"
published_date: "2026-03-25T19:41:50Z"
updated_date: "2026-03-27T21:52:37.272493Z"
updated_date: "2026-03-30T12:26:07.105030Z"
severity: "low"
exploit_status: "unknown"
source_confidence: "ecosystem-authority"
@@ -20,6 +20,7 @@ allow_public_validation: "yes, with ownership or explicit authorization"
authorization_prerequisite: "asset ownership proof or explicit written authorization"
minimal_validation: "read-only probe, controlled payload, reversible test"
aliases:
- "BIT-prestashop-2026-33673"
- "CVE-2026-33673"
- "GHSA-35pf-37c6-jxjv"
affected_versions:

查看文件

@@ -4,7 +4,7 @@ system_id: "prestashop"
category: "ecommerce"
advisory_mode: "core"
published_date: "2026-03-25T19:40:42Z"
updated_date: "2026-03-27T21:52:10.658795Z"
updated_date: "2026-03-30T12:26:06.049752Z"
severity: "low"
exploit_status: "unknown"
source_confidence: "ecosystem-authority"
@@ -20,6 +20,7 @@ allow_public_validation: "yes, with ownership or explicit authorization"
authorization_prerequisite: "asset ownership proof or explicit written authorization"
minimal_validation: "read-only probe, controlled payload, reversible test"
aliases:
- "BIT-prestashop-2026-33674"
- "CVE-2026-33674"
- "GHSA-283w-xf3q-788v"
affected_versions:

查看文件

@@ -12,7 +12,7 @@
- 已实证(synthetic): `0`
- 阻塞数: `0`
- 待人工/缺浏览器证据: `24`
- 最近渲染时间: `2026-03-30T09:18:25+00:00`
- 最近渲染时间: `2026-03-31T09:18:20+00:00`
## 目标约束

查看文件

@@ -12,7 +12,7 @@
- 已实证(synthetic): `0`
- 阻塞数: `0`
- 待人工/缺浏览器证据: `71`
- 最近渲染时间: `2026-03-30T09:18:25+00:00`
- 最近渲染时间: `2026-03-31T09:18:20+00:00`
## 目标约束

查看文件

@@ -12,7 +12,7 @@
- 已实证(synthetic): `0`
- 阻塞数: `0`
- 待人工/缺浏览器证据: `111`
- 最近渲染时间: `2026-03-30T09:18:25+00:00`
- 最近渲染时间: `2026-03-31T09:18:20+00:00`
## 目标约束