最新预警列表

MEDIUM NVD Recent 2026-07-06

CVE-2026-13434:A flaw was found in KubeVirt's network annotation generator. When a tenant creates a VirtualMachineInstance with a Multu

A flaw was found in KubeVirt's network annotation generator. When a tenant creates a VirtualMachineInstance with a Multus network configuration, the supplied networkName value is written verbatim into the launcher pod's v1.multus-cni.io/default-network an

LOW NVD Recent 2026-07-06

CVE-2026-58057:Flowise before 3.1.3 validates Custom MCP stdio environment variables against a denylist using a case-sensitive comparis

Flowise before 3.1.3 validates Custom MCP stdio environment variables against a denylist using a case-sensitive comparison, so on Windows, where environment names are case-insensitive, supplying 'node_options' bypasses the NODE_OPTIONS denylist entry. An

HIGH NVD Recent 2026-07-06

CVE-2026-58049:FFmpeg's RASC video decoder (decode_dlta in libavcodec/rasc.c) performs 32-bit reads and writes at the row cursor before

FFmpeg's RASC video decoder (decode_dlta in libavcodec/rasc.c) performs 32-bit reads and writes at the row cursor before the NEXT_LINE row-boundary check and validates the DLTA region in pixel rather than byte units, so a DLTA run on a PAL8 frame can acce

CRITICAL NVD Recent 2026-07-06

CVE-2026-52955:In the Linux kernel, the following vulnerability has been resolved: libceph: Fix potential out-of-bounds access in crus

In the Linux kernel, the following vulnerability has been resolved: libceph: Fix potential out-of-bounds access in crush_decode() A message of type CEPH_MSG_OSD_MAP containing a crush map with at least one bucket has two fields holding the bucket algori

CRITICAL NVD Recent 2026-07-06

CVE-2026-44935:Missing validation of "valuesFrom" references in Helm Deployer of SUSE Rancher Fleet 0.15 before 0.15.2, 0.14 before 0.1

Missing validation of "valuesFrom" references in Helm Deployer of SUSE Rancher Fleet 0.15 before 0.15.2, 0.14 before 0.14.6, 0.13 before 0.13.11 and 0.12 before 0.12.15 could be used by owners of one tenant to access fleet credentials of other tenants.

MEDIUM openEuler 安全公告 OSV 2026-07-06

CVE-2026-50031:freeipmi security update

freeipmi security update

CRITICAL openEuler 安全公告 OSV 2026-07-06

CVE-2026-56209:aom security update

aom security update

CRITICAL openEuler 安全公告 OSV 2026-07-06

CVE-2026-53466:ImageMagick security update

ImageMagick security update

CRITICAL openEuler 安全公告 OSV 2026-07-06

CVE-2026-12087:perl security update

perl security update

CRITICAL openEuler 安全公告 OSV 2026-07-06

CVE-2026-54273:python-aiohttp security update

python-aiohttp security update

CRITICAL openEuler 安全公告 OSV 2026-07-06

CVE-2026-48487:python-zeroconf security update

python-zeroconf security update

CRITICAL openEuler 安全公告 OSV 2026-07-06

CVE-2026-2923:gstreamer1-plugins-bad-free security update

gstreamer1-plugins-bad-free security update

MEDIUM openEuler 安全公告 OSV 2026-07-06

CVE-2026-47770:jq security update

jq security update

CRITICAL openEuler 安全公告 OSV 2026-07-06

CVE-2026-42055:nginx security update

nginx security update

HIGH NVD Recent 2026-07-03

CVE-2026-12912:A flaw was found in libtiff. A remote attacker could exploit this vulnerability by providing a specially crafted PixarLo

A flaw was found in libtiff. A remote attacker could exploit this vulnerability by providing a specially crafted PixarLog-compressed TIFF image. This issue occurs when decoding Pixarlog codec images with the PIXARLOGDATAFMT_8BITABGR output format and a sp

站内所有资源、漏洞预警、工具与专题内容仅面向企业授权自测、合规研究与安全运维使用。本站不提供可直接用于非法攻击的程序、载荷或黑产平台入口。