We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.
Please see our statement on Data Privacy.
A CORS misconfiguration vulnerability exists in netease-youdao/qanything version 1.4.1. This vulnerability allows an attacker to bypass the Same-Origin Policy, potentially leading to sensitive information exposure. Properly implementing a restrictive CORS policy is crucial to prevent such security issues.
Reserved 2024-08-20 | Published 2025-03-20 | Updated 2025-03-20 | Assigner @huntr_aiCWE-346 Origin Validation Error
huntr.com/bounties/bda53fab-88aa-4e03-8d9d-4cf50a98ffc7
Support options