Typecho v1.3.0 was discovered to contain a Client IP Spoofing vulnerability, which allows attackers to falsify their IP addresses by specifying an arbitrary IP as value of X-Forwarded-For or Client-Ip headers while performing HTTP requests.
{ "versions": [ { "introduced": "0" }, { "last_affected": "1.3.0-NA" } ] }
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-35538.json"