最新预警列表

CRITICAL CERT/CC VU 2026-08-24

VU#614868: OpenCart ecommerce platform contains directory traversal vulnerability

Overview The OpenCart v4.2.0.0 extension installer contains a directory traversal vulnerability. The extension installation process extracts uploaded .zip files then uses the zip entry filenames as filesystem paths, without validating that the resolved pa

CRITICAL NVD Recent 2026-08-20

CVE-2026-20315:As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Workload engineering t

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Workload engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multipl

CRITICAL NVD Recent 2026-08-20

CVE-2026-20231:As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Workload engineering t

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Workload engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multipl

CRITICAL NVD Recent 2026-08-20

CVE-2026-20318:As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Workload engineering t

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Workload engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multipl

CRITICAL NVD Recent 2026-08-20

CVE-2026-20317:As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Workload engineering t

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Workload engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multipl

CRITICAL NVD Recent 2026-08-20

CVE-2026-18963:A flaw was found in the reset-credentials flow of the keycloak-services component, which is the core engine for identity

A flaw was found in the reset-credentials flow of the keycloak-services component, which is the core engine for identity and access management in Red Hat Build of Keycloak. The issue allows an unauthenticated attacker to force the password reset process f

CRITICAL NVD Recent 2026-08-20

CVE-2026-20030:As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Crosswork engineering team ha

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Crosswork engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple inte

CRITICAL NVD Recent 2026-08-20

CVE-2026-18855:The Link Library plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation

The Link Library plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the ll_delete_link_fields function in all versions up to, and including, 7.9.4 This makes it possible for unauthenticated attackers

CRITICAL NVD Recent 2026-08-20

CVE-2026-19598:The Pods – Custom Content Types and Fields plugin for WordPress is vulnerable to Privilege Escalation via Authorization

The Pods – Custom Content Types and Fields plugin for WordPress is vulnerable to Privilege Escalation via Authorization Bypass in all versions up to, and including, 3.3.9. The vulnerability exists because the pods_admin AJAX router funnels every access ch

CRITICAL openEuler 安全公告 OSV 2026-08-20

CVE-2026-15816:dracut security update

dracut security update

CRITICAL openEuler 安全公告 OSV 2026-08-20

CVE-2026-43153:kernel security update

kernel security update

CRITICAL openEuler 安全公告 OSV 2026-08-20

CVE-2026-35579:coredns security update

coredns security update

CRITICAL openEuler 安全公告 OSV 2026-08-20

CVE-2026-42955:unbound security update

unbound security update

CRITICAL openEuler 安全公告 OSV 2026-08-20

CVE-2026-60000:openssh security update

openssh security update

CRITICAL CERT/CC VU 2026-08-19

VU#874418: RDK-B WebUI contains multiple vulnerabilities

Overview RDK Central RDK-B WebUI version, rdkb-2025q4-kirkstone, contains multiple vulnerabilities involving memory corruption, improper authentication, race conditions, and insufficient input validation. An attacker with network access to an affected Web

站内所有资源、漏洞预警、工具与专题内容仅面向企业授权自测、合规研究与安全运维使用。本站不提供可直接用于非法攻击的程序、载荷或黑产平台入口。