高性能开源CFML(ColdFusion Markup Language)应用服务器Lucee近日曝出严重安全漏洞。该漏洞编号为CVE-2025-34074,CVSS评分高达9.4,允许已认证管理员通过滥用Lucee计划任务功能执行任意远程代码。 漏洞技术细节 Lucee凭借对Java集成、HTTP、ORM和动态脚本的支持,被开发者 ...
Users of the Adobe's ColdFusion and its open source alternative Lucee web application platforms should patch against an exploited vulnerability that allows attackers to run arbitrary code on servers ...