From 394426a53278483829c1b904f3065f0b642d21ab Mon Sep 17 00:00:00 2001 From: "github-actions[bot]" Date: Sun, 16 Aug 2026 09:32:15 +0000 Subject: [PATCH] =?UTF-8?q?docs:=20=E6=9B=B4=E6=96=B0=201=20=E7=AF=87?= =?UTF-8?q?=E6=96=87=E7=AB=A0=20-=20=E6=99=AE=E5=8D=8EPowerPMS=20/Plan/Bat?= =?UTF-8?q?chHandleFeedBackRecord=20=E9=89=B4=E6=9D=83=E7=BB=95=E8=BF=87?= =?UTF-8?q?=E6=BC=8F=E6=B4=9E=20[skip=20ci]?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit --- README.md | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/README.md b/README.md index 9b31fde..327381c 100644 --- a/README.md +++ b/README.md @@ -882,6 +882,7 @@ - [金和OA C6 PlanGiveOut.aspx SQL注入漏洞+越权访问IDOR漏洞+XSS漏洞](https://mrxn.net/jswz/jhsoft-PlanGiveOut-planid-httpOID-sqli.html) - [用友GRP-U8Cloud产品jmreport组件模块Freemarker模板SSTI致RCE漏洞分析](https://mrxn.net/jswz/yonyou-grp-u8c-jmreport-Freemarker-rce.html) - [CVE-2026-64638: XSS2Shell — WordPress Pre-Auth XSS → RCE Chain PoC](https://github.com/Boreas37/CVE-2026-64638-PoC) +- [普华PowerPMS /Plan/BatchHandleFeedBackRecord 鉴权绕过漏洞](https://mrxn.net/jswz/powerpms-Plan-BatchHandleFeedBackRecord-auth-bypass.html) ## 提权辅助相关 @@ -3168,4 +3169,4 @@ ### 最后,选一个屁股吧! -![](https://ooo.0o0.ooo/2017/06/13/593fb9335fe9c.jpg) +![](https://ooo.0o0.ooo/2017/06/13/593fb9335fe9c.jpg) \ No newline at end of file