文件
websafe-kb/08-threat-intel/generated/dashboard/docs/architecture-library.html
2026-03-17 05:45:01 -07:00

6080 行
256 KiB
HTML
原始文件 Blame 文件历史

此文件含有模棱两可的 Unicode 字符
此文件含有可能会与其他字符混淆的 Unicode 字符。 如果您是想特意这样的,可以安全地忽略该警告。 使用 Escape 按钮显示他们。
<!doctype html>
<html lang="zh-CN">
<head>
<meta charset="utf-8">
<meta name="viewport" content="width=device-width, initial-scale=1">
<title>当前架构库镜像</title>
<style>
:root {
--bg: #08111f;
--panel: rgba(9, 18, 32, 0.9);
--border: rgba(137, 171, 214, 0.2);
--text: #f7fafc;
--muted: #9fb3ca;
--accent: #5eead4;
}
* { box-sizing: border-box; }
body {
margin: 0;
min-height: 100vh;
font-family: "IBM Plex Sans", "Segoe UI", sans-serif;
color: var(--text);
background:
radial-gradient(circle at top left, rgba(94, 234, 212, 0.12), transparent 26%),
linear-gradient(160deg, #050c16 0%, #091526 50%, #10233d 100%);
}
main {
max-width: 1080px;
margin: 0 auto;
padding: 32px 20px 40px;
}
.panel {
background: var(--panel);
border: 1px solid var(--border);
border-radius: 20px;
padding: 24px;
box-shadow: 0 24px 80px rgba(1, 7, 20, 0.45);
}
.actions {
display: flex;
flex-wrap: wrap;
gap: 12px;
margin-bottom: 18px;
}
.chip {
display: inline-flex;
align-items: center;
gap: 8px;
border-radius: 999px;
border: 1px solid var(--border);
padding: 10px 14px;
color: var(--text);
background: rgba(255,255,255,0.05);
text-decoration: none;
}
.chip:hover { border-color: rgba(94, 234, 212, 0.42); }
h1 {
margin: 0 0 12px;
font-family: "IBM Plex Serif", Georgia, serif;
font-size: clamp(1.8rem, 4vw, 3rem);
line-height: 1.08;
}
.meta {
color: var(--muted);
margin-bottom: 18px;
}
pre {
margin: 0;
padding: 20px;
overflow: auto;
border-radius: 16px;
border: 1px solid rgba(137, 171, 214, 0.12);
background: rgba(2, 8, 22, 0.84);
color: #d6e5f5;
font-family: "IBM Plex Mono", "SFMono-Regular", monospace;
font-size: 0.92rem;
line-height: 1.6;
white-space: pre-wrap;
}
</style>
</head>
<body>
<main>
<div class="panel">
<div class="actions">
<a class="chip" href="/overview/index.html">返回工作台</a>
</div>
<h1>当前架构库镜像</h1>
<div class="meta">工作台内置镜像页:当前架构库结构化数据镜像。</div>
<pre>{
&quot;generated_at&quot;: &quot;2026-03-17T12:44:25+00:00&quot;,
&quot;title&quot;: &quot;当前架构库&quot;,
&quot;summary&quot;: &quot;工作台、控制面、数据层、授权边界与系统覆盖的当前真值视图。&quot;,
&quot;sections&quot;: [
{
&quot;title&quot;: &quot;仓库定位与当前状态&quot;,
&quot;summary&quot;: &quot;授权攻防实验与研究知识库;仅适用于自有资产、本地靶场和明确授权目标。&quot;,
&quot;open&quot;: true,
&quot;badges&quot;: [
&quot;LAB ONLY&quot;,
&quot;AUTHORIZED TARGETS ONLY&quot;,
&quot;非生产安全基线&quot;
],
&quot;stats&quot;: [
{
&quot;label&quot;: &quot;纳管系统&quot;,
&quot;value&quot;: &quot;62&quot;
},
{
&quot;label&quot;: &quot;历史全量系统&quot;,
&quot;value&quot;: &quot;18&quot;
},
{
&quot;label&quot;: &quot;近两年全量系统&quot;,
&quot;value&quot;: &quot;44&quot;
},
{
&quot;label&quot;: &quot;当前运行&quot;,
&quot;value&quot;: &quot;3&quot;
},
{
&quot;label&quot;: &quot;当前漏洞条目&quot;,
&quot;value&quot;: &quot;89&quot;
}
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;仓库根目录&quot;,
&quot;value&quot;: &quot;/Users/x/websafe&quot;
},
{
&quot;label&quot;: &quot;默认本地地址&quot;,
&quot;value&quot;: &quot;http://127.0.0.1:8734/&quot;
},
{
&quot;label&quot;: &quot;自动刷新周期&quot;,
&quot;value&quot;: &quot;5 秒&quot;
},
{
&quot;label&quot;: &quot;生成时间&quot;,
&quot;value&quot;: &quot;2026-03-17T12:44:25+00:00&quot;
}
],
&quot;links&quot;: [
{
&quot;label&quot;: &quot;总览首页&quot;,
&quot;href&quot;: &quot;/overview/index.html&quot;,
&quot;description&quot;: &quot;工作台总览、最新运行和全局摘要。&quot;
},
{
&quot;label&quot;: &quot;运行中心&quot;,
&quot;href&quot;: &quot;/runs/index.html&quot;,
&quot;description&quot;: &quot;运行队列、详情、证据和日志入口。&quot;
},
{
&quot;label&quot;: &quot;系统分组&quot;,
&quot;href&quot;: &quot;/systems/index.html&quot;,
&quot;description&quot;: &quot;按系统和分类浏览覆盖情况。&quot;
},
{
&quot;label&quot;: &quot;架构库&quot;,
&quot;href&quot;: &quot;/architecture/index.html&quot;,
&quot;description&quot;: &quot;查看控制面、数据层和授权边界。&quot;
}
]
},
{
&quot;title&quot;: &quot;授权边界与目标模型&quot;,
&quot;summary&quot;: &quot;所有实验都绑定到本地、自建公网或明确授权目标,不面向无关第三方资产。&quot;,
&quot;open&quot;: true,
&quot;stats&quot;: [
{
&quot;label&quot;: &quot;允许目标类型&quot;,
&quot;value&quot;: &quot;3&quot;
},
{
&quot;label&quot;: &quot;禁止类型&quot;,
&quot;value&quot;: &quot;1&quot;
}
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;允许目标&quot;,
&quot;value&quot;: &quot;lab-local\nlab-public\nauthorized-third-party&quot;
},
{
&quot;label&quot;: &quot;禁止目标&quot;,
&quot;value&quot;: &quot;out-of-scope\n无归属证明目标\n公共知名站点\n泛互联网枚举&quot;
},
{
&quot;label&quot;: &quot;全局原则&quot;,
&quot;value&quot;: &quot;任何公网验证前先确认资产归属或授权关系。\n优先只读探测、最小化回显验证和低频实验。\n涉及账户、令牌、敏感数据和业务写入时采用最小必要动作。\n不做泛互联网枚举,不对无关公共站点复用同类测试。&quot;
}
],
&quot;links&quot;: [
{
&quot;label&quot;: &quot;授权模型镜像&quot;,
&quot;href&quot;: &quot;./docs/authorization-model.html&quot;,
&quot;description&quot;: &quot;目标分类、原则与记录要求。&quot;
},
{
&quot;label&quot;: &quot;仓库入口镜像&quot;,
&quot;href&quot;: &quot;./docs/root-readme.html&quot;,
&quot;description&quot;: &quot;仓库定位、能力矩阵与自动化入口。&quot;
}
]
},
{
&quot;title&quot;: &quot;控制面与自动化入口&quot;,
&quot;summary&quot;: &quot;Intel 控制面负责情报入库;Lab 控制面负责本地部署、攻击验证、证据收集和看板生成。&quot;,
&quot;open&quot;: true,
&quot;items&quot;: [
{
&quot;title&quot;: &quot;情报控制面Intel&quot;,
&quot;summary&quot;: &quot;负责 source adapter、规范化、渲染、校验和 PR 流程。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;CLI 入口&quot;,
&quot;value&quot;: &quot;python3 /Users/x/websafe/scripts/intel/main.py&quot;
},
{
&quot;label&quot;: &quot;主要命令&quot;,
&quot;value&quot;: &quot;render\nvalidate\nhotlane\ningest --since last-success\nreconcile\nbackfill --tier history-full --dry-run\nopen-pr --dry-run&quot;
},
{
&quot;label&quot;: &quot;定时入口&quot;,
&quot;value&quot;: &quot;scripts/intel/run-hourly.sh\nscripts/intel/run-nightly.sh\nscripts/intel/run-weekly-reconcile.sh&quot;
}
]
},
{
&quot;title&quot;: &quot;实证控制面Lab&quot;,
&quot;summary&quot;: &quot;负责 catalog、compose、seed、baseline、attack、browser、evidence、render 和 queue。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;CLI 入口&quot;,
&quot;value&quot;: &quot;python3 /Users/x/websafe/scripts/lab/main.py&quot;
},
{
&quot;label&quot;: &quot;主要命令&quot;,
&quot;value&quot;: &quot;catalog sync\nvalidate\nrun-case\nrun-system\nrun-batch\nrender-run\nserve-dashboard --port 8734\ncleanup\nretry-failures&quot;
},
{
&quot;label&quot;: &quot;关键模块&quot;,
&quot;value&quot;: &quot;catalog/\nprovision/\ncompose/\nseed/\nbaseline/\nattack/\nbrowser/\nevidence/\nrender/\nqueue/&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;数据层与本地地址&quot;,
&quot;summary&quot;: &quot;Registry、生成层、run bundle 与 docs 镜像共同构成工作台的本地数据面。&quot;,
&quot;open&quot;: true,
&quot;items&quot;: [
{
&quot;title&quot;: &quot;真值层&quot;,
&quot;summary&quot;: &quot;统一的 registry 与 repro/source 配置。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;漏洞条目 Registry&quot;,
&quot;value&quot;: &quot;08-threat-intel/registry/advisories/*.json&quot;
},
{
&quot;label&quot;: &quot;系统 Registry&quot;,
&quot;value&quot;: &quot;08-threat-intel/registry/systems/*.json&quot;
},
{
&quot;label&quot;: &quot;运行 Registry&quot;,
&quot;value&quot;: &quot;08-threat-intel/registry/runs/*.json&quot;
},
{
&quot;label&quot;: &quot;source-map 真值&quot;,
&quot;value&quot;: &quot;08-threat-intel/source-map.yaml&quot;
},
{
&quot;label&quot;: &quot;repro-map 真值&quot;,
&quot;value&quot;: &quot;08-threat-intel/repro-map.yaml&quot;
}
]
},
{
&quot;title&quot;: &quot;生成层与展示层&quot;,
&quot;summary&quot;: &quot;dashboard JSON、run report、docs 镜像与本地静态 UI。&quot;,
&quot;open&quot;: false,
&quot;links&quot;: [
{
&quot;label&quot;: &quot;总览首页&quot;,
&quot;href&quot;: &quot;/overview/index.html&quot;,
&quot;description&quot;: &quot;工作台总览、最新运行和全局摘要。&quot;
},
{
&quot;label&quot;: &quot;运行中心&quot;,
&quot;href&quot;: &quot;/runs/index.html&quot;,
&quot;description&quot;: &quot;运行队列、详情、证据和日志入口。&quot;
},
{
&quot;label&quot;: &quot;系统分组&quot;,
&quot;href&quot;: &quot;/systems/index.html&quot;,
&quot;description&quot;: &quot;按系统和分类浏览覆盖情况。&quot;
},
{
&quot;label&quot;: &quot;架构库&quot;,
&quot;href&quot;: &quot;/architecture/index.html&quot;,
&quot;description&quot;: &quot;查看控制面、数据层和授权边界。&quot;
},
{
&quot;label&quot;: &quot;文档中心&quot;,
&quot;href&quot;: &quot;/docs/index.html&quot;,
&quot;description&quot;: &quot;集中查看项目文档、本地镜像和说明。&quot;
},
{
&quot;label&quot;: &quot;数据中心&quot;,
&quot;href&quot;: &quot;/data/index.html&quot;,
&quot;description&quot;: &quot;查看 summary、runs、systems 等 JSON 入口。&quot;
},
{
&quot;label&quot;: &quot;旧版工作台&quot;,
&quot;href&quot;: &quot;/legacy/index.html&quot;,
&quot;description&quot;: &quot;保留的 legacy 回退入口。&quot;
},
{
&quot;label&quot;: &quot;项目功能文档&quot;,
&quot;href&quot;: &quot;/docs/project-features.html&quot;,
&quot;description&quot;: &quot;项目能力、目录结构与自动化链路总览。&quot;
},
{
&quot;label&quot;: &quot;前端设计文档&quot;,
&quot;href&quot;: &quot;/docs/frontend-dashboard-design.html&quot;,
&quot;description&quot;: &quot;当前本地工作台的交互与视觉规范。&quot;
},
{
&quot;label&quot;: &quot;安全编码索引&quot;,
&quot;href&quot;: &quot;/docs/secure-code-index.html&quot;,
&quot;description&quot;: &quot;secure-code 修复库本地镜像。&quot;
},
{
&quot;label&quot;: &quot;仓库入口镜像&quot;,
&quot;href&quot;: &quot;/docs/root-readme.html&quot;,
&quot;description&quot;: &quot;仓库根 README 的本地镜像。&quot;
},
{
&quot;label&quot;: &quot;授权模型&quot;,
&quot;href&quot;: &quot;/docs/authorization-model.html&quot;,
&quot;description&quot;: &quot;允许目标范围、全局原则与记录要求。&quot;
},
{
&quot;label&quot;: &quot;source-map 真值&quot;,
&quot;href&quot;: &quot;/docs/source-map.html&quot;,
&quot;description&quot;: &quot;系统覆盖、来源和输出目录真值。&quot;
},
{
&quot;label&quot;: &quot;repro-map 真值&quot;,
&quot;href&quot;: &quot;/docs/repro-map.html&quot;,
&quot;description&quot;: &quot;复现族路由、浏览器要求和日志策略。&quot;
},
{
&quot;label&quot;: &quot;覆盖矩阵&quot;,
&quot;href&quot;: &quot;/docs/coverage-matrix.html&quot;,
&quot;description&quot;: &quot;自动生成覆盖摘要的本地镜像。&quot;
},
{
&quot;label&quot;: &quot;设计来源清单&quot;,
&quot;href&quot;: &quot;/docs/design-source.html&quot;,
&quot;description&quot;: &quot;Lovart 模板本地 vendor manifest。&quot;
},
{
&quot;label&quot;: &quot;架构库镜像&quot;,
&quot;href&quot;: &quot;/docs/architecture-library.html&quot;,
&quot;description&quot;: &quot;当前架构库的结构化镜像页。&quot;
},
{
&quot;label&quot;: &quot;summary.json&quot;,
&quot;href&quot;: &quot;/summary.json&quot;,
&quot;description&quot;: &quot;全局摘要、状态分布和最近失败。&quot;
},
{
&quot;label&quot;: &quot;runs.json&quot;,
&quot;href&quot;: &quot;/runs.json&quot;,
&quot;description&quot;: &quot;最近 run 的结构化详情。&quot;
},
{
&quot;label&quot;: &quot;systems.json&quot;,
&quot;href&quot;: &quot;/systems.json&quot;,
&quot;description&quot;: &quot;系统级覆盖与浏览器证据摘要。&quot;
},
{
&quot;label&quot;: &quot;advisories.json&quot;,
&quot;href&quot;: &quot;/advisories.json&quot;,
&quot;description&quot;: &quot;漏洞条目元数据与来源。&quot;
},
{
&quot;label&quot;: &quot;profiles.json&quot;,
&quot;href&quot;: &quot;/profiles.json&quot;,
&quot;description&quot;: &quot;复现档案元数据。&quot;
},
{
&quot;label&quot;: &quot;architecture.json&quot;,
&quot;href&quot;: &quot;/architecture.json&quot;,
&quot;description&quot;: &quot;当前架构库结构化 JSON。&quot;
}
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;工作台根目录&quot;,
&quot;value&quot;: &quot;08-threat-intel/generated/dashboard/&quot;
},
{
&quot;label&quot;: &quot;运行归档根目录&quot;,
&quot;value&quot;: &quot;06-case-studies/generated-runs/&lt;run-id&gt;/&quot;
},
{
&quot;label&quot;: &quot;默认入口&quot;,
&quot;value&quot;: &quot;/index.html&quot;
},
{
&quot;label&quot;: &quot;总览入口&quot;,
&quot;value&quot;: &quot;/overview/index.html&quot;
},
{
&quot;label&quot;: &quot;运行入口&quot;,
&quot;value&quot;: &quot;/runs/index.html&quot;
},
{
&quot;label&quot;: &quot;系统入口&quot;,
&quot;value&quot;: &quot;/systems/index.html&quot;
},
{
&quot;label&quot;: &quot;架构入口&quot;,
&quot;value&quot;: &quot;/architecture/index.html&quot;
},
{
&quot;label&quot;: &quot;文档入口&quot;,
&quot;value&quot;: &quot;/docs/index.html&quot;
},
{
&quot;label&quot;: &quot;数据入口&quot;,
&quot;value&quot;: &quot;/data/index.html&quot;
},
{
&quot;label&quot;: &quot;旧版入口&quot;,
&quot;value&quot;: &quot;/legacy/index.html&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;系统覆盖分组&quot;,
&quot;summary&quot;: &quot;基于 source-map 和 repro-map 生成的当前分组视图,可展开查看每个系统的来源、输出目录和复现默认值。&quot;,
&quot;open&quot;: true,
&quot;items&quot;: [
{
&quot;title&quot;: &quot;CMS / 内容平台&quot;,
&quot;summary&quot;: &quot;9 个系统 · 历史全量 3 · 近两年全量 6&quot;,
&quot;open&quot;: false,
&quot;stats&quot;: [
{
&quot;label&quot;: &quot;系统数&quot;,
&quot;value&quot;: &quot;9&quot;
},
{
&quot;label&quot;: &quot;历史全量&quot;,
&quot;value&quot;: &quot;3&quot;
},
{
&quot;label&quot;: &quot;近两年全量&quot;,
&quot;value&quot;: &quot;6&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;Directus (directus)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core, extension&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/cms/directus&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core\nextension&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;authz-server-side-recheck\ntoken-cookie-storage\nfile-upload-validation&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;directus&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;Directus GitHub Advisories\nOSV Directus&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;file-upload-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Discourse (discourse)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core, plugin&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/cms/discourse&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core\nplugin&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;authz-server-side-recheck\nxss-output-encoding\nplugin-extension-trust-policy&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;discourse&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;Discourse Meta Security\nGitHub Discourse Advisories&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;xss-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Drupal (drupal)&quot;,
&quot;summary&quot;: &quot;历史全量 · core, module&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;历史全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 1&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/cms/drupal&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core\nmodule&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;authz-server-side-recheck\nxss-output-encoding\nfile-upload-validation\nplugin-extension-trust-policy&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;drupal:drupal&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;drupal\ndrupal core&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;Drupal Security Advisories RSS\nNVD Drupal&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;Drupal Security Advisories Site&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;xss-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;official-image\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Ghost (ghost)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/cms/ghost&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;authz-server-side-recheck\nxss-output-encoding\ntoken-cookie-storage&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;ghost&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;Ghost GitHub Advisories\nNVD Ghost&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;xss-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Joomla (joomla)&quot;,
&quot;summary&quot;: &quot;历史全量 · core, extension&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;历史全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/cms/joomla&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core\nextension&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;xss-output-encoding\nfile-upload-validation\npath-traversal-guard\nplugin-extension-trust-policy&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;joomla:joomla!&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;joomla&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;Joomla Security Centre\nNVD Joomla&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;xss-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;official-image\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;MediaWiki (mediawiki)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core, extension&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/cms/mediawiki&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core\nextension&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;xss-output-encoding\nauthz-server-side-recheck\nfile-upload-validation&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;mediawiki:mediawiki&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;mediawiki&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;MediaWiki Security Releases\nNVD MediaWiki&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;xss-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Moodle (moodle)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core, plugin&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/cms/moodle&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core\nplugin&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;authz-server-side-recheck\nxss-output-encoding\nfile-upload-validation&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;moodle:moodle&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;moodle&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;Moodle Security News\nNVD Moodle&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;xss-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Strapi (strapi)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core, plugin&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/cms/strapi&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core\nplugin&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;authz-server-side-recheck\ntoken-cookie-storage\nfile-upload-validation&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;strapi&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;Strapi GitHub Advisories\nOSV Strapi&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;file-upload-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;WordPress (wordpress)&quot;,
&quot;summary&quot;: &quot;历史全量 · core, plugin&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;历史全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 3&quot;,
&quot;研究源 1&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/cms/wordpress&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core\nplugin&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;plugin-extension-trust-policy\nxss-output-encoding\nfile-upload-validation\ntoken-cookie-storage&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;wordpress:wordpress&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;wordpress\nwp-admin\nwp-includes&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;WordPress Security News\nNVD WordPress&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;Wordfence Vulnerability Database\nPatchstack Database\nWPScan Vulnerability Database&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;PortSwigger Research&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;xss-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;official-image\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
}
]
},
{
&quot;title&quot;: &quot;Web 框架与运行时&quot;,
&quot;summary&quot;: &quot;29 个系统 · 历史全量 6 · 近两年全量 23&quot;,
&quot;open&quot;: false,
&quot;stats&quot;: [
{
&quot;label&quot;: &quot;系统数&quot;,
&quot;value&quot;: &quot;29&quot;
},
{
&quot;label&quot;: &quot;历史全量&quot;,
&quot;value&quot;: &quot;6&quot;
},
{
&quot;label&quot;: &quot;近两年全量&quot;,
&quot;value&quot;: &quot;23&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;ASP.NET Core (aspnet-core)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 1&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/frameworks/aspnet-core&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;authz-server-side-recheck\nxss-output-encoding\nfile-upload-validation&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;microsoft:asp.net_core&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;asp.net core&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;NVD ASP.NET Core&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;xss-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Angular (angular)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/frameworks/angular&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;xss-output-encoding\ntemplate-injection-guard\ncsp-trusted-types&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;angular&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;GitHub Global Advisories\nOSV Angular&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;xss-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Astro (astro)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/frameworks/astro&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;authz-server-side-recheck\ncsp-trusted-types&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;astro&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;GitHub Global Advisories\nOSV Astro&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;authz-bypass-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Django (django)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/frameworks/django&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;xss-output-encoding\npath-traversal-guard\nfile-upload-validation&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;djangoproject:django&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;django&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;Django Security RSS\nOSV Django&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;xss-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Echo (echo)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 1&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/frameworks/echo&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;proxy-trust-boundary\ntoken-cookie-storage&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;echo&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;OSV Echo&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;proxy-boundary-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Express (express)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/frameworks/express&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;xss-output-encoding\nssrf-url-validation\nproxy-trust-boundary&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;express&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;GitHub Global Advisories\nOSV Express&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;xss-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Fastify (fastify)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/frameworks/fastify&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;proxy-trust-boundary\nssrf-url-validation\nxss-output-encoding&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;fastify&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;GitHub Global Advisories\nOSV Fastify&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;xss-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Flask (flask)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/frameworks/flask&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;xss-output-encoding\nssrf-url-validation\ntoken-cookie-storage&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;flask&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;OSV Flask\nGitHub Global Advisories&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;xss-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Gin (gin)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 1&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/frameworks/gin&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;proxy-trust-boundary\nxss-output-encoding&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;gin&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;OSV Gin&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;xss-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Hapi (hapi)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/frameworks/hapi&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;proxy-trust-boundary\ntoken-cookie-storage&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;hapi&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;GitHub Global Advisories\nOSV Hapi&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;proxy-boundary-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Koa (koa)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/frameworks/koa&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;proxy-trust-boundary\nssrf-url-validation&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;koa&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;GitHub Global Advisories\nOSV Koa&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;proxy-boundary-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Laravel (laravel)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/frameworks/laravel&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;xss-output-encoding\nauthz-server-side-recheck\nfile-upload-validation&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;laravel&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;GitHub Global Advisories\nOSV Laravel&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;xss-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;NestJS (nestjs)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/frameworks/nestjs&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;authz-server-side-recheck\ntoken-cookie-storage\nssrf-url-validation&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;nestjs&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;GitHub Global Advisories\nOSV NestJS&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;ssrf-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Next.js (nextjs)&quot;,
&quot;summary&quot;: &quot;历史全量 · core&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;历史全量&quot;,
&quot;官方源 3&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/frameworks/nextjs&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;authz-server-side-recheck\nproxy-trust-boundary\ntoken-cookie-storage&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;next.js\nnext&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;GitHub Next.js Advisories\nGitHub Global Advisories\nOSV Next.js&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;proxy-boundary-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;official-source\nsynthetic\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Node.js (nodejs)&quot;,
&quot;summary&quot;: &quot;历史全量 · core&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;历史全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/frameworks/nodejs&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;ssrf-url-validation\nrequest-smuggling-boundary\ndependency-upgrade-policy&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;nodejs:node.js&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;nodejs\nnode.js&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;Node.js Security Releases\nCISA KEV Node.js&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;ssrf-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;official-source\nsynthetic\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;minimal-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Nuxt (nuxt)&quot;,
&quot;summary&quot;: &quot;历史全量 · core&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;历史全量&quot;,
&quot;官方源 3&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/frameworks/nuxt&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;authz-server-side-recheck\nproxy-trust-boundary\ntoken-cookie-storage&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;nuxt&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;Nuxt Security\nGitHub Global Advisories\nOSV Nuxt&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;proxy-boundary-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;official-source\nsynthetic\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;React (react)&quot;,
&quot;summary&quot;: &quot;历史全量 · core&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;历史全量&quot;,
&quot;官方源 3&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/frameworks/react&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;xss-output-encoding\ndom-sink-hardening\ncsp-trusted-types&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;react\nreact-dom&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;GitHub React Advisories\nGitHub Global Advisories\nOSV React&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;xss-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Ruby on Rails (rails)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/frameworks/rails&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;xss-output-encoding\nfile-upload-validation\nauthz-server-side-recheck&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;rails&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;GitHub Global Advisories\nOSV Rails&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;xss-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Spring Boot (spring-boot)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/frameworks/spring-boot&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;proxy-trust-boundary\nauthz-server-side-recheck&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;spring boot&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;Spring Security Advisories\nGitHub Global Advisories&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;proxy-boundary-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Spring Framework (spring-framework)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/frameworks/spring-framework&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;authz-server-side-recheck\npath-traversal-guard\ndeserialization-safety&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;vmware:spring_framework&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;spring framework&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;Spring Security Advisories\nGitHub Global Advisories&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;deserialization-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Spring Security (spring-security)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/frameworks/spring-security&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;authz-server-side-recheck\ntoken-cookie-storage\nproxy-trust-boundary&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;spring security&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;Spring Security Advisories\nGitHub Global Advisories&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;proxy-boundary-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;SvelteKit (sveltekit)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/frameworks/sveltekit&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;authz-server-side-recheck\ntoken-cookie-storage&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;sveltekit\nsvelte&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;GitHub Global Advisories\nOSV SvelteKit&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;session-token-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Symfony (symfony)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/frameworks/symfony&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;xss-output-encoding\nauthz-server-side-recheck\npath-traversal-guard&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;symfony&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;GitHub Global Advisories\nOSV Symfony&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;xss-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Undici (undici)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/frameworks/undici&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;ssrf-url-validation\nproxy-trust-boundary&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;undici&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;GitHub Global Advisories\nOSV Undici&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;proxy-boundary-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Vite (vite)&quot;,
&quot;summary&quot;: &quot;历史全量 · core, plugin&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;历史全量&quot;,
&quot;官方源 3&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/frameworks/vite&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core\nplugin&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;dependency-upgrade-policy\nfile-upload-validation\nproxy-trust-boundary&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;vite&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;Vite Security\nGitHub Global Advisories\nOSV Vite&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;proxy-boundary-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;official-source\nsynthetic\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Vue (vue)&quot;,
&quot;summary&quot;: &quot;历史全量 · core&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;历史全量&quot;,
&quot;官方源 3&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/frameworks/vue&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;xss-output-encoding\ntemplate-injection-guard\ncsp-trusted-types&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;vue\nvue compiler&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;Vue Security\nGitHub Global Advisories\nOSV Vue&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;xss-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;official-source\nsynthetic\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Werkzeug (werkzeug)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/frameworks/werkzeug&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;proxy-trust-boundary\nrequest-smuggling-boundary&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;werkzeug&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;OSV Werkzeug\nGitHub Global Advisories&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;proxy-boundary-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;esbuild (esbuild)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/frameworks/esbuild&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;dependency-upgrade-policy\nfile-upload-validation&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;esbuild&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;GitHub Global Advisories\nOSV esbuild&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;file-upload-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;webpack (webpack)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core, plugin&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/frameworks/webpack&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core\nplugin&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;dependency-upgrade-policy\nfile-upload-validation&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;webpack&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;GitHub Global Advisories\nOSV webpack&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;file-upload-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
}
]
},
{
&quot;title&quot;: &quot;开源平台与后台系统&quot;,
&quot;summary&quot;: &quot;9 个系统 · 历史全量 0 · 近两年全量 9&quot;,
&quot;open&quot;: false,
&quot;stats&quot;: [
{
&quot;label&quot;: &quot;系统数&quot;,
&quot;value&quot;: &quot;9&quot;
},
{
&quot;label&quot;: &quot;历史全量&quot;,
&quot;value&quot;: &quot;0&quot;
},
{
&quot;label&quot;: &quot;近两年全量&quot;,
&quot;value&quot;: &quot;9&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;Adminer (adminer)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 1&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/platforms/adminer&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;xss-output-encoding\nauthz-server-side-recheck&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;adminer:adminer&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;adminer&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;NVD Adminer&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;xss-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;GitLab CE (gitlab-ce)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 1&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/platforms/gitlab-ce&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;authz-server-side-recheck\ntoken-cookie-storage\ndeserialization-safety&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;gitlab:gitlab&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;gitlab&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;GitLab Security Releases\nNVD GitLab&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;GitLab Advisory Database&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;deserialization-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Gitea (gitea)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/platforms/gitea&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;authz-server-side-recheck\ntoken-cookie-storage\nproxy-trust-boundary&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;gitea&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;GitHub Gitea Advisories\nOSV Gitea&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;proxy-boundary-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;official-image\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Grafana (grafana)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core, plugin&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/platforms/grafana&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core\nplugin&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;authz-server-side-recheck\nplugin-extension-trust-policy\nxss-output-encoding&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;grafana:grafana&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;grafana&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;Grafana Security Advisories\nCISA KEV Grafana&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;xss-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Jenkins (jenkins)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core, plugin&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/platforms/jenkins&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core\nplugin&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;plugin-extension-trust-policy\nauthz-server-side-recheck\ndeserialization-safety&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;jenkins:jenkins&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;jenkins&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;Jenkins Security Advisories\nNVD Jenkins&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;deserialization-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Kibana (kibana)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core, plugin&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/platforms/kibana&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core\nplugin&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;authz-server-side-recheck\nxss-output-encoding\nproxy-trust-boundary&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;elastic:kibana&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;kibana&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;Elastic Security Announcements\nNVD Kibana&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;xss-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Mattermost (mattermost)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core, plugin&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/platforms/mattermost&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core\nplugin&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;authz-server-side-recheck\nxss-output-encoding\ntoken-cookie-storage&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;mattermost:mattermost&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;mattermost&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;Mattermost Security Updates\nNVD Mattermost&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;xss-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Redmine (redmine)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core, plugin&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/platforms/redmine&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core\nplugin&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;authz-server-side-recheck\nxss-output-encoding\nplugin-extension-trust-policy&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;redmine:redmine&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;redmine&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;Redmine Security Advisories\nNVD Redmine&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;xss-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;phpMyAdmin (phpmyadmin)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/platforms/phpmyadmin&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;xss-output-encoding\nauthz-server-side-recheck\npath-traversal-guard&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;phpmyadmin:phpmyadmin&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;phpmyadmin&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;phpMyAdmin Security Page\nNVD phpMyAdmin&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;xss-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
}
]
},
{
&quot;title&quot;: &quot;服务器与边界层&quot;,
&quot;summary&quot;: &quot;6 个系统 · 历史全量 3 · 近两年全量 3&quot;,
&quot;open&quot;: false,
&quot;stats&quot;: [
{
&quot;label&quot;: &quot;系统数&quot;,
&quot;value&quot;: &quot;6&quot;
},
{
&quot;label&quot;: &quot;历史全量&quot;,
&quot;value&quot;: &quot;3&quot;
},
{
&quot;label&quot;: &quot;近两年全量&quot;,
&quot;value&quot;: &quot;3&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;Apache HTTP Server (apache-httpd)&quot;,
&quot;summary&quot;: &quot;历史全量 · server&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;历史全量&quot;,
&quot;官方源 3&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/servers/apache-httpd&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;server&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;request-smuggling-boundary\nproxy-trust-boundary\npath-traversal-guard&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;apache:http_server&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;apache http server\nhttpd&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;Apache HTTPD Security\nCISA KEV Apache HTTPD\nNVD Apache HTTP Server&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;proxy-boundary-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;official-image\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;minimal-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Apache Tomcat (apache-tomcat)&quot;,
&quot;summary&quot;: &quot;历史全量 · server&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;历史全量&quot;,
&quot;官方源 3&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/servers/apache-tomcat&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;server&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;request-smuggling-boundary\nauthz-server-side-recheck\npath-traversal-guard&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;apache:tomcat&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;tomcat&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;Apache Tomcat Security\nCISA KEV Tomcat\nNVD Tomcat&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;authz-bypass-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;official-image\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;minimal-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Caddy (caddy)&quot;,
&quot;summary&quot;: &quot;近两年全量 · server&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/servers/caddy&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;server&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;proxy-trust-boundary\nrequest-smuggling-boundary&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;caddy&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;GitHub Caddy Advisories\nOSV Caddy&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;proxy-boundary-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;minimal-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;HAProxy (haproxy)&quot;,
&quot;summary&quot;: &quot;近两年全量 · server&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/servers/haproxy&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;server&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;proxy-trust-boundary\nrequest-smuggling-boundary&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;haproxy:haproxy&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;haproxy&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;HAProxy Security Advisories\nNVD HAProxy&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;proxy-boundary-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;minimal-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Nginx (nginx)&quot;,
&quot;summary&quot;: &quot;历史全量 · server&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;历史全量&quot;,
&quot;官方源 3&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/servers/nginx&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;server&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;proxy-trust-boundary\nrequest-smuggling-boundary\ncsp-trusted-types&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;f5:nginx\nnginx:nginx&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;nginx&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;NGINX Security Advisories\nNVD NGINX\nCISA KEV NGINX&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;proxy-boundary-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;official-image\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;minimal-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Traefik (traefik)&quot;,
&quot;summary&quot;: &quot;近两年全量 · server&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/servers/traefik&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;server&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;proxy-trust-boundary\nrequest-smuggling-boundary&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;traefik&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;GitHub Traefik Advisories\nOSV Traefik&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;proxy-boundary-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;minimal-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
}
]
},
{
&quot;title&quot;: &quot;电商系统&quot;,
&quot;summary&quot;: &quot;9 个系统 · 历史全量 6 · 近两年全量 3&quot;,
&quot;open&quot;: false,
&quot;stats&quot;: [
{
&quot;label&quot;: &quot;系统数&quot;,
&quot;value&quot;: &quot;9&quot;
},
{
&quot;label&quot;: &quot;历史全量&quot;,
&quot;value&quot;: &quot;6&quot;
},
{
&quot;label&quot;: &quot;近两年全量&quot;,
&quot;value&quot;: &quot;3&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;Adobe Commerce (adobe-commerce)&quot;,
&quot;summary&quot;: &quot;历史全量 · core, extension&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;历史全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 1&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/ecommerce/adobe-commerce&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core\nextension&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;authz-server-side-recheck\nfile-upload-validation\nxss-output-encoding\nplugin-extension-trust-policy&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;adobe:commerce\nmagento:magento&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;magento\nadobe commerce&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;Adobe Security Bulletins\nNVD Adobe Commerce&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;Sansec Research&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;xss-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Magento Open Source (magento-open-source)&quot;,
&quot;summary&quot;: &quot;历史全量 · core, extension&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;历史全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 1&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/ecommerce/magento-open-source&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core\nextension&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;authz-server-side-recheck\nfile-upload-validation\nplugin-extension-trust-policy&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;magento:magento&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;magento&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;Magento GitHub Advisories\nNVD Magento&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;Sansec Research&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;file-upload-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Medusa (medusa)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core, extension&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/ecommerce/medusa&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core\nextension&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;authz-server-side-recheck\ntoken-cookie-storage&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;medusa&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;GitHub Medusa Advisories\nOSV Medusa&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;session-token-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;OpenCart (opencart)&quot;,
&quot;summary&quot;: &quot;历史全量 · core, extension&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;历史全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/ecommerce/opencart&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core\nextension&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;authz-server-side-recheck\nplugin-extension-trust-policy\nfile-upload-validation&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;opencart:opencart&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;opencart&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;OpenCart Releases\nNVD OpenCart&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;file-upload-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;official-image\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;OpenMage / Mage-OS (openmage)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core, extension&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/ecommerce/openmage&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core\nextension&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;authz-server-side-recheck\nplugin-extension-trust-policy&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;openmage\nmage-os&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;OpenMage GitHub Advisories\nNVD OpenMage&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;plugin-extension-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;PrestaShop (prestashop)&quot;,
&quot;summary&quot;: &quot;历史全量 · core, module&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;历史全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 1&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/ecommerce/prestashop&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core\nmodule&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;plugin-extension-trust-policy\nauthz-server-side-recheck\nfile-upload-validation&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;prestashop:prestashop&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;prestashop&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;PrestaShop Security Page\nGitHub PrestaShop Advisories&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;Friends Of Presta Security&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;file-upload-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;official-image\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Saleor (saleor)&quot;,
&quot;summary&quot;: &quot;近两年全量 · core, extension&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;近两年全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/ecommerce/saleor&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core\nextension&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;authz-server-side-recheck\ntoken-cookie-storage&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;saleor&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;GitHub Saleor Advisories\nNVD Saleor&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;session-token-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;Shopware (shopware)&quot;,
&quot;summary&quot;: &quot;历史全量 · core, extension&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;历史全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 0&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/ecommerce/shopware&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core\nextension&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;authz-server-side-recheck\nplugin-extension-trust-policy\nfile-upload-validation&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;shopware&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;Shopware Security Advisories\nNVD Shopware&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;file-upload-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;WooCommerce (woocommerce)&quot;,
&quot;summary&quot;: &quot;历史全量 · core, extension&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;历史全量&quot;,
&quot;官方源 2&quot;,
&quot;生态源 2&quot;,
&quot;研究源 0&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;输出目录&quot;,
&quot;value&quot;: &quot;07-framework-security/ecommerce/woocommerce&quot;
},
{
&quot;label&quot;: &quot;Advisory 模式&quot;,
&quot;value&quot;: &quot;core\nextension&quot;
},
{
&quot;label&quot;: &quot;Secure-Code 主题&quot;,
&quot;value&quot;: &quot;plugin-extension-trust-policy\nxss-output-encoding\nauthz-server-side-recheck&quot;
},
{
&quot;label&quot;: &quot;CPE 关键字&quot;,
&quot;value&quot;: &quot;-&quot;
},
{
&quot;label&quot;: &quot;GHSA 关键字&quot;,
&quot;value&quot;: &quot;woocommerce&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;来源配置&quot;,
&quot;summary&quot;: &quot;官方、生态权威与研究补充来源。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;官方来源&quot;,
&quot;value&quot;: &quot;Woo Developer Advisories\nGitHub WooCommerce Advisories&quot;
},
{
&quot;label&quot;: &quot;生态来源&quot;,
&quot;value&quot;: &quot;Patchstack Database\nWordfence Vulnerability Database&quot;
},
{
&quot;label&quot;: &quot;研究来源&quot;,
&quot;value&quot;: &quot;-&quot;
}
]
},
{
&quot;title&quot;: &quot;复现默认值&quot;,
&quot;summary&quot;: &quot;repro-map 中的默认攻击族、浏览器要求和日志策略。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;默认漏洞家族&quot;,
&quot;value&quot;: &quot;xss-generic&quot;
},
{
&quot;label&quot;: &quot;浏览器默认要求&quot;,
&quot;value&quot;: &quot;&quot;
},
{
&quot;label&quot;: &quot;优先制品模式&quot;,
&quot;value&quot;: &quot;synthetic\nofficial-source\nsynthetic&quot;
},
{
&quot;label&quot;: &quot;种子策略&quot;,
&quot;value&quot;: &quot;default-seed&quot;
},
{
&quot;label&quot;: &quot;日志采集器&quot;,
&quot;value&quot;: &quot;docker-logs\nhttp-snapshot&quot;
},
{
&quot;label&quot;: &quot;报告模板&quot;,
&quot;value&quot;: &quot;default-lab-report&quot;
}
]
}
]
}
]
}
]
},
{
&quot;title&quot;: &quot;Repro 路由概览&quot;,
&quot;summary&quot;: &quot;按默认漏洞家族聚合当前系统路由,帮助查看 family runner 覆盖面。&quot;,
&quot;open&quot;: true,
&quot;items&quot;: [
{
&quot;title&quot;: &quot;xss-generic&quot;,
&quot;summary&quot;: &quot;默认路由到该 family 的系统数27&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;系统数量&quot;,
&quot;value&quot;: &quot;27&quot;
}
]
},
{
&quot;title&quot;: &quot;proxy-boundary-generic&quot;,
&quot;summary&quot;: &quot;默认路由到该 family 的系统数16&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;系统数量&quot;,
&quot;value&quot;: &quot;16&quot;
}
]
},
{
&quot;title&quot;: &quot;file-upload-generic&quot;,
&quot;summary&quot;: &quot;默认路由到该 family 的系统数8&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;系统数量&quot;,
&quot;value&quot;: &quot;8&quot;
}
]
},
{
&quot;title&quot;: &quot;deserialization-generic&quot;,
&quot;summary&quot;: &quot;默认路由到该 family 的系统数3&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;系统数量&quot;,
&quot;value&quot;: &quot;3&quot;
}
]
},
{
&quot;title&quot;: &quot;session-token-generic&quot;,
&quot;summary&quot;: &quot;默认路由到该 family 的系统数3&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;系统数量&quot;,
&quot;value&quot;: &quot;3&quot;
}
]
},
{
&quot;title&quot;: &quot;authz-bypass-generic&quot;,
&quot;summary&quot;: &quot;默认路由到该 family 的系统数2&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;系统数量&quot;,
&quot;value&quot;: &quot;2&quot;
}
]
},
{
&quot;title&quot;: &quot;ssrf-generic&quot;,
&quot;summary&quot;: &quot;默认路由到该 family 的系统数2&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;系统数量&quot;,
&quot;value&quot;: &quot;2&quot;
}
]
},
{
&quot;title&quot;: &quot;plugin-extension-generic&quot;,
&quot;summary&quot;: &quot;默认路由到该 family 的系统数1&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;系统数量&quot;,
&quot;value&quot;: &quot;1&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;当前生成态与阻塞概览&quot;,
&quot;summary&quot;: &quot;当前 render 后的状态分布、失败摘要与最近可见阻塞。&quot;,
&quot;open&quot;: true,
&quot;stats&quot;: [
{
&quot;label&quot;: &quot;Run 数&quot;,
&quot;value&quot;: &quot;3&quot;
},
{
&quot;label&quot;: &quot;Advisory 数&quot;,
&quot;value&quot;: &quot;89&quot;
},
{
&quot;label&quot;: &quot;状态类型&quot;,
&quot;value&quot;: &quot;2&quot;
},
{
&quot;label&quot;: &quot;最近失败&quot;,
&quot;value&quot;: &quot;3&quot;
}
],
&quot;items&quot;: [
{
&quot;title&quot;: &quot;状态分布&quot;,
&quot;summary&quot;: &quot;verification_status 当前计数。&quot;,
&quot;open&quot;: false,
&quot;items&quot;: [
{
&quot;title&quot;: &quot;制品阻塞&quot;,
&quot;summary&quot;: &quot;当前累计 2 条。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;状态编码&quot;,
&quot;value&quot;: &quot;blocked-artifact&quot;
},
{
&quot;label&quot;: &quot;数量&quot;,
&quot;value&quot;: &quot;2&quot;
}
]
},
{
&quot;title&quot;: &quot;人工分诊&quot;,
&quot;summary&quot;: &quot;当前累计 1 条。&quot;,
&quot;open&quot;: false,
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;状态编码&quot;,
&quot;value&quot;: &quot;triage-manual&quot;
},
{
&quot;label&quot;: &quot;数量&quot;,
&quot;value&quot;: &quot;1&quot;
}
]
}
]
},
{
&quot;title&quot;: &quot;最近失败&quot;,
&quot;summary&quot;: &quot;当前 dashboard 摘要里可见的失败或人工分诊样本。&quot;,
&quot;open&quot;: false,
&quot;items&quot;: [
{
&quot;title&quot;: &quot;Gitea allows attackers to add attachments with forbidden file extensions in code.gitea.io/gitea&quot;,
&quot;summary&quot;: &quot;unable to get image &#x27;gitea/gitea:1.22.6&#x27;: Cannot connect to the Docker daemon at unix:///Users/x/.docker/run/docker.sock. Is the docker daemon running?&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;制品阻塞&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;运行 ID&quot;,
&quot;value&quot;: &quot;gitea-livecheck-20260316&quot;
},
{
&quot;label&quot;: &quot;漏洞条目&quot;,
&quot;value&quot;: &quot;gitea--CVE-2025-68939&quot;
},
{
&quot;label&quot;: &quot;状态&quot;,
&quot;value&quot;: &quot;制品阻塞&quot;
},
{
&quot;label&quot;: &quot;阻塞原因&quot;,
&quot;value&quot;: &quot;unable to get image &#x27;gitea/gitea:1.22.6&#x27;: Cannot connect to the Docker daemon at unix:///Users/x/.docker/run/docker.sock. Is the docker daemon running?&quot;
}
]
},
{
&quot;title&quot;: &quot;Gitea allows attackers to add attachments with forbidden file extensions in code.gitea.io/gitea&quot;,
&quot;summary&quot;: &quot;unable to get image &#x27;gitea/gitea:1.22.6&#x27;: Cannot connect to the Docker daemon at unix:///Users/x/.docker/run/docker.sock. Is the docker daemon running?&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;制品阻塞&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;运行 ID&quot;,
&quot;value&quot;: &quot;gitea-gitea--CVE-2025-68939-20260317063330&quot;
},
{
&quot;label&quot;: &quot;漏洞条目&quot;,
&quot;value&quot;: &quot;gitea--CVE-2025-68939&quot;
},
{
&quot;label&quot;: &quot;状态&quot;,
&quot;value&quot;: &quot;制品阻塞&quot;
},
{
&quot;label&quot;: &quot;阻塞原因&quot;,
&quot;value&quot;: &quot;unable to get image &#x27;gitea/gitea:1.22.6&#x27;: Cannot connect to the Docker daemon at unix:///Users/x/.docker/run/docker.sock. Is the docker daemon running?&quot;
}
]
},
{
&quot;title&quot;: &quot;Authorization Bypass in Next.js Middleware&quot;,
&quot;summary&quot;: &quot;dry-run only&quot;,
&quot;open&quot;: false,
&quot;badges&quot;: [
&quot;人工分诊&quot;
],
&quot;fields&quot;: [
{
&quot;label&quot;: &quot;运行 ID&quot;,
&quot;value&quot;: &quot;nextjs-nextjs--CVE-2025-29927-20260317063047&quot;
},
{
&quot;label&quot;: &quot;漏洞条目&quot;,
&quot;value&quot;: &quot;nextjs--CVE-2025-29927&quot;
},
{
&quot;label&quot;: &quot;状态&quot;,
&quot;value&quot;: &quot;人工分诊&quot;
},
{
&quot;label&quot;: &quot;阻塞原因&quot;,
&quot;value&quot;: &quot;dry-run only&quot;
}
]
}
]
}
]
}
]
}</pre>
</div>
</main>
</body>
</html>