最新预警列表

HIGH openEuler 安全公告 OSV 2026-09-14

CVE-2026-80213:ruby security update

ruby security update

CRITICAL openEuler 安全公告 OSV 2026-09-14

CVE-2026-78002:rsyslog security update

rsyslog security update

MEDIUM openEuler 安全公告 OSV 2026-09-14

CVE-2026-66046:expat security update

expat security update

MEDIUM openEuler 安全公告 OSV 2026-09-14

CVE-2026-63623:libvirt security update

libvirt security update

CRITICAL openEuler 安全公告 OSV 2026-09-14

CVE-2025-28162:openjdk-11 security update

openjdk-11 security update

MEDIUM openEuler 安全公告 OSV 2026-09-14

CVE-2026-86145:pcre2 security update

pcre2 security update

CRITICAL openEuler 安全公告 OSV 2026-09-14

CVE-2026-18393:ffmpeg security update

ffmpeg security update

CRITICAL openEuler 安全公告 OSV 2026-09-14

CVE-2026-13346:python-pip security update

python-pip security update

CRITICAL openEuler 安全公告 OSV 2026-09-14

CVE-2026-21925:openjdk-17 security update

openjdk-17 security update

CRITICAL openEuler 安全公告 OSV 2026-09-14

CVE-2026-73282:openssh security update

openssh security update

MEDIUM NVD Recent 2026-09-14

CVE-2026-52307:An authenticated stored cross-site scripting (XSS) vulnerability in the Column Management component of ClassCMS 1CMS v5.

An authenticated stored cross-site scripting (XSS) vulnerability in the Column Management component of ClassCMS 1CMS v5.6 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the title field.

MEDIUM Cisco PSIRT 2026-09-14

Cisco Industrial Ethernet 1000 Series Switches Stored Cross-Site Scripting Vulnerability

A vulnerability in the web-based management interface of Cisco Industrial Ethernet (IE) 1000 Series Switches could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the interface. This vulnerab

CRITICAL Cisco PSIRT 2026-09-14

Cisco Secure Workload Software Security Hardening Release: August 2026

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Workload engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple i

HIGH CISA KEV 2026-09-14

CVE-2026-76461:Cisco Cisco Secure Email Gateway SQL Injection Vulnerability

Cisco AsyncOS software for Cisco Secure Email Gateway (SEG) contains a SQL injection vulnerability that could allow an unauthenticated, remote attacker to execute arbitrary commands with root privileges on the underlying operating system.

MEDIUM NVD Recent 2026-09-11

CVE-2026-81908:Concrete CMS 9.2.0 to 9.5.2 contain a missing authorization vulnerability in the REST API Groups list endpoint. The list

Concrete CMS 9.2.0 to 9.5.2 contain a missing authorization vulnerability in the REST API Groups list endpoint. The listGroups() method in concrete/src/Api/Controller/Groups.php registers a permissions checker callback that unconditionally returns true, s

站内所有资源、漏洞预警、工具与专题内容仅面向企业授权自测、合规研究与安全运维使用。本站不提供可直接用于非法攻击的程序、载荷或黑产平台入口。