Arcane < 1.18.0 - Unauthenticated Template and Env Disclosure
Arcane < 1.18.0 contains an information disclosure caused by missing authorization on /api/templates GET endpoints, letting unauthenticated network clients read sensitive Compose YAML and .env content, exploit requires network access
ArcanePoC 已收录
CVSS—