最新预警列表

MEDIUM openEuler 安全公告 OSV 2026-08-01

CVE-2026-61627:libass security update

libass security update

CRITICAL openEuler 安全公告 OSV 2026-08-01

CVE-2026-59884:python-pyasn1 security update

python-pyasn1 security update

CRITICAL openEuler 安全公告 OSV 2026-08-01

CVE-2025-15059:gimp security update

gimp security update

MEDIUM openEuler 安全公告 OSV 2026-08-01

CVE-2026-57965:spice-vdagent security update

spice-vdagent security update

MEDIUM openEuler 安全公告 OSV 2026-08-01

CVE-2026-54058:python-pillow security update

python-pillow security update

MEDIUM openEuler 安全公告 OSV 2026-08-01

CVE-2026-54058:python-pillow security update

python-pillow security update

MEDIUM openEuler 安全公告 OSV 2026-08-01

CVE-2026-54058:python-pillow security update

python-pillow security update

MEDIUM openEuler 安全公告 OSV 2026-08-01

CVE-2026-54058:python-pillow security update

python-pillow security update

MEDIUM NVD Recent 2026-08-01

CVE-2026-20316:A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenti

A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remote attacker to log in to an affected device using a low-privileged account to access sensitive data within the impacted syst

MEDIUM NVD Recent 2026-08-01

CVE-2026-54707:OnionShare is an open source tool that lets you securely and anonymously share files, host websites, and chat with frien

OnionShare is an open source tool that lets you securely and anonymously share files, host websites, and chat with friends using the Tor network. Prior to 2.6.4, OnionShare CLI/Desktop does not enforce the Receive mode disable_files setting in cli/onionsh

CRITICAL NVD Recent 2026-07-31

CVE-2026-52855:Wings is the server control plane for Pterodactyl, a free, open-source game server management panel. Prior to 1.12.3, {{

Wings is the server control plane for Pterodactyl, a free, open-source game server management panel. Prior to 1.12.3, {{config.}} placeholders in egg configuration-file templates allow a low-privileged user to read {{config.token}}, {{config.token_id}}, a

CRITICAL NVD Recent 2026-07-31

CVE-2026-67822:Tenda W6-S 1.0.0.4(510) contains a stack-based buffer overflow vulnerability in the /goform/wifiSSIDset endpoint. The fu

Tenda W6-S 1.0.0.4(510) contains a stack-based buffer overflow vulnerability in the /goform/wifiSSIDset endpoint. The function formwrlSSIDset uses sprintf to copy user-controlled 'GO' and 'index' parameters into a 64-byte stack buffer without length restr

HIGH NVD Recent 2026-07-31

CVE-2026-66731:facil.io 0.7.5 through 0.7.6 contains a denial-of-service vulnerability in the HTTP/1.1 chunked transfer encoding parser

facil.io 0.7.5 through 0.7.6 contains a denial-of-service vulnerability in the HTTP/1.1 chunked transfer encoding parser that allows unauthenticated remote attackers to crash the server by sending a negative chunk size value. Attackers can send a single P

HIGH NVD Recent 2026-07-31

CVE-2026-66730:facil.io 0.6.0 through 0.7.6 contains a denial-of-service vulnerability in the multipart body parser that allows an unau

facil.io 0.6.0 through 0.7.6 contains a denial-of-service vulnerability in the multipart body parser that allows an unauthenticated remote attacker to permanently freeze worker processes at 100% CPU by sending a multipart/form-data request with a partial

HIGH NVD Recent 2026-07-31

CVE-2026-66729:facil.io 0.6.0 through 0.7.6 contains an integer underflow vulnerability in the multipart MIME body parser that allows u

facil.io 0.6.0 through 0.7.6 contains an integer underflow vulnerability in the multipart MIME body parser that allows unauthenticated remote attackers to crash the server process by sending a crafted Content-Disposition header with an empty field name. A

站内所有资源、漏洞预警、工具与专题内容仅面向企业授权自测、合规研究与安全运维使用。本站不提供可直接用于非法攻击的程序、载荷或黑产平台入口。