References https://www.twcert.org.tw/tw/cp-132-8415-853e0-1.html https://www.nics.nat.gov.tw/core_business/information_security_information_sharing/Vulnerability_Alert_Announcements/85fd8b28-0bcd-4b5d-ace3-1e02db60f62f/ https://www.cvedetails.com/cve/CVE-2025-1144/ https://www.appsecure.security/vulnerability-database/cve-2025-1144/ https://net.nthu.edu.tw/netsys/mailing:announcement:20250211_01?do=export_pdf https://www.ncyu.edu.tw/pims/Subject/Detail/216989?nodeId=57817 https://olis.kmu.edu.tw/index.php/en-gb/notice/79-security/3892-ana20250212a
Related VulnerabilitiesPoCserverless-framework-config-exposure: Serverless Framework - Configuration ExposurePoCterraformrc-credentials-exposure: Terraform CLI Configuration - Credentials ExposurePoCterraform-tfstate-exposure: Terraform State - File ExposurePoCCVE-2025-68273: Signal K Server <= 2.18.0 - Information DisclosurePoCCVE-2026-25703: NeuVector - Information DisclosurePoCCVE-2026-89063: Bookly <=28.1 - IDOR Unauthenticated Sensitive Data AccessPoCmcp-streamable-http-exposure: MCP Streamable HTTP Server - Unauthenticated Initialize融易網路|GPM LIGHT - Sensitive Data ExposurePoCCVE-2026-6639: AI Copilot Content Generator <=1.4.6 - Unauthenticated Task Data ExposurePoCpowerdns-monitor-exposure: PowerDNS Authoritative Server Monitor - Unauthenticated ExposurePoCqdrant-telemetry-exposure: Qdrant - Telemetry ExposurePoCCVE-2026-13153: Essential Blocks < 6.4.0 - Information DisclosurePoCflowise-chatflows-exposure: Flowise AI - Unauthenticated Chatflows API Exposure