最新预警列表

CRITICAL NVD Recent 2026-09-15

CVE-2026-20353:As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Email Gateway and Cisc

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Email Gateway and Cisco Secure Email and Web Manager engineering team has conducted a comprehensive internal security review. This review resulted in softwar

CRITICAL NVD Recent 2026-09-15

CVE-2026-20279:As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XR Software engineering t

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XR Software engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening releases that address multiple

CRITICAL NVD Recent 2026-09-15

CVE-2026-20274:As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XR Software engineering t

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XR Software engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening releases that address multiple

CRITICAL NVD Recent 2026-09-15

CVE-2026-19931:A flaw in libcurl makes it wrongly reuse an HTTP connection setup for a given hostname using Negotiate authentication, w

A flaw in libcurl makes it wrongly reuse an HTTP connection setup for a given hostname using Negotiate authentication, when the initial request is done using empty credentials. This can make user B's request get sent over user A's previously authenticated

CRITICAL NVD Recent 2026-09-15

CVE-2026-18924:A flaw in libcurl's handling of HTTP/2 Server Push streams, when the parent handle is set to share connections with othe

A flaw in libcurl's handling of HTTP/2 Server Push streams, when the parent handle is set to share connections with other handles, can lead to use-after-free in the cleanup process.

CRITICAL NVD Recent 2026-09-15

CVE-2026-72710:SPIP before 4.4.18 contains a mass assignment vulnerability in the editer_objet action that allows unauthenticated attac

SPIP before 4.4.18 contains a mass assignment vulnerability in the editer_objet action that allows unauthenticated attackers to write arbitrary rows to any SQL table lacking a champs_editables allowlist by supplying an attacker-controlled arg parameter re

CRITICAL NVD Recent 2026-09-15

CVE-2026-72709:SPIP before version 4.4.18 contains a missing authorization vulnerability in sensitive actions under ecrire/action/ that

SPIP before version 4.4.18 contains a missing authorization vulnerability in sensitive actions under ecrire/action/ that allows unauthenticated attackers to invoke privileged actions by supplying only a valid CSRF nonce without any server-side permission

CRITICAL CERT/CC VU 2026-09-14

VU#687587: AOMEI Backupper amwrtdrv.sys local privilege escalation vulnerability allows arbitrary writes to physical disks

Overview An incorrect permissions assignment vulnerability in the amwrtdrv.sys kernel driver, included with AOMEI Backupper 8.4.0, allows an unprivileged local user to perform arbitrary writes to the physical disk. When Secure Boot is disabled, this can b

CRITICAL openEuler 安全公告 OSV 2026-09-14

CVE-2026-78002:rsyslog security update

rsyslog security update

CRITICAL openEuler 安全公告 OSV 2026-09-14

CVE-2025-28162:openjdk-11 security update

openjdk-11 security update

CRITICAL openEuler 安全公告 OSV 2026-09-14

CVE-2026-18393:ffmpeg security update

ffmpeg security update

CRITICAL openEuler 安全公告 OSV 2026-09-14

CVE-2026-13346:python-pip security update

python-pip security update

CRITICAL openEuler 安全公告 OSV 2026-09-14

CVE-2026-21925:openjdk-17 security update

openjdk-17 security update

CRITICAL openEuler 安全公告 OSV 2026-09-14

CVE-2026-73282:openssh security update

openssh security update

CRITICAL Cisco PSIRT 2026-09-14

Cisco Secure Workload Software Security Hardening Release: August 2026

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Workload engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple i

站内所有资源、漏洞预警、工具与专题内容仅面向企业授权自测、合规研究与安全运维使用。本站不提供可直接用于非法攻击的程序、载荷或黑产平台入口。