Detailed Description: The/dict/history_txt.php file on the official website of sogou input dictionary leaks the plain text sogou dictionary.
Access like http://pinyin.sogou.com/dict/history_txt.php? You can download a large number of official sogou plain text lexicon by id = 1227.
For a good input method, word segmentation is crucial. Many people choose sogou as a good advantage.
However, if the word library of the input method can be obtained by others in plain text, other input methods will also have the word library of sogou. The consequences are well understood. (Do you remember that sogou accused Google of stealing the dictionary N years ago ?....)
Proof of vulnerability: This URL was found mainly when Baidu indexed this page ......
Vulnerability proof
Batch download allowed
Solution: delete the file and check whether there are any files of the same type under the website directory.