zadam / trilium

Build your personal knowledge base with Trilium Notes
GNU Affero General Public License v3.0
27.42k stars 1.93k forks source link

Denial of Service #2340

Open cyker opened 3 years ago

cyker commented 3 years ago

Preflight Checklist

Trilium Version

0.48.6

What operating system are you using?

Windows

What is your setup?

Local (no sync)

Operating System Version

Windows 10 19042.1348

Expected Behavior

/src/routes/setup.js setupPage function 11 lines: windowService.createMainWindow(); -> windowService.createSetupWindow();

Actual Behavior

local sofeware listen 0.0.0.0:37840 send http://ip:37840/setup similar DDOS 图片

Additional Information

No response

Myzel394 commented 3 years ago

What exactly is your behavior? Do you do the dos or is your computer spamming those windowses?

cyker commented 3 years ago

What exactly is your behavior? Do you do the dos or is your computer spamming those windowses?

The browser accesses the link and the system automatically opens a window