PT-2026-55749 · Bettafish+1 · Bettafish+1
CVSS v4.0
5.5
Medium
| Vector | AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:P |
Name of the Vulnerable Software and Affected Versions
666ghj BettaFish versions prior to 1.2.2
Description
A remote attack is possible in the InsightEngine search-result Deduplication component due to an issue in the
deduplicate results() function within the InsightEngine/agent.py file. This flaw allows for partial string comparison when a manipulation is executed.Recommendations
As a temporary workaround, restrict the use of the
deduplicate results() function until a patch is available.Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Bettafish
Insightengine