CVE-2026-6984: Vulnerabilidad de Seguridad en AstrBotDevs - Exploit Publicamente Disponible
Descripción de la Vulnerabilidad
A security flaw has been discovered in the AstrBotDevs software that affects version 4.22.1 and earlier. The vulnerability is located in the file astrbot/dashboard/routes/t2i.py, specifically within the function called create_template(). This issue allows attackers to execute arbitrary template engine commands, leading to improper neutralization of special elements.
Vulnerabilidad Detallada:
The flaw exists in how special characters (such as `