最新预警列表

HIGH Cisco PSIRT 2026-10-01

Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software IKEv2 Certificate Authentication Denial of Service Vulnerability

A vulnerability in the certification authentication feature of Internet Key Exchange version 2 (IKEv2) for Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthentica

HIGH Cisco PSIRT 2026-10-01

Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Logging Denial of Service Vulnerability

A vulnerability in the system rate-limiting process for syslog message 419002 of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to ca

HIGH Cisco PSIRT 2026-10-01

Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software SSL VPN Denial of Service Vulnerability

Update for September 16, 2026: The original 1.0 version of this advisory was specific to the Cisco Adaptive Security Virtual Appliance (ASAv) and Cisco Secure Firewall Threat Defense Virtual (FTDv) models. However, it was later found that this vulnerabili

HIGH 阿里云 Alibaba Cloud Linux 安全公告 2026-10-01

CVE-2026-46300(Fragnesia)内核漏洞不受影响情况说明

高危CVE修复说明CVE-2026-31431 内核升级修复说明CVE-2026-43284 & CVE-2026-43500 (DirtyFrag)内核漏洞修复说明

HIGH 阿里云 Alibaba Cloud Linux 安全公告 2026-10-01

CVE-2026-43284 & CVE-2026-43500 (DirtyFrag)内核漏洞修复说明

高危CVE修复说明CVE-2026-31431 内核升级修复说明CVE-2026-46300(Fragnesia)内核漏洞不受影响情况说明

HIGH 阿里云 Alibaba Cloud Linux 安全公告 2026-10-01

CVE-2026-31431 内核升级修复说明

高危CVE修复说明CVE-2026-43284 & CVE-2026-43500 (DirtyFrag)内核漏洞修复说明CVE-2026-46300(Fragnesia)内核漏洞不受影响情况说明

HIGH openEuler 安全公告 OSV 2026-09-30

CVE-2026-89329:multipath-tools security update

multipath-tools security update

HIGH CISA KEV 2026-09-29

CVE-2026-86950:Apple Apple Multiple Products Out-of-Bounds Write Vulnerability

Apple iOS, macOS, and iPadOS contain an out-of-bounds write vulnerability in CoreGraphics that may lead to arbitrary code execution.

HIGH CISA KEV 2026-09-27

CVE-2026-88772:Citrix Citrix NetScaler Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability

Citrix NetScaler ADC and NetScaler Gateway contain an improper restriction of operations within the bounds of a memory buffer vulnerability that could allow for remote code execution or denial of service

HIGH openEuler 安全公告 OSV 2026-09-25

CVE-2026-17705:libxml2 security update

libxml2 security update

HIGH openEuler 安全公告 OSV 2026-09-25

CVE-2026-72522:xmlrpc-c security update

xmlrpc-c security update

HIGH Cisco PSIRT 2026-09-25

Cisco Secure Firewall Management Center Software Static Credential Vulnerability

A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remote attacker to log in to an affected device using a low-privileged account to access sensitive data within the impacted syst

HIGH CISA KEV 2026-09-25

CVE-2026-87902:WordPress WordPress Core Remote File Inclusion Vulnerability

WordPress Core contains a remote file inclusion vulnerability which could allow an unauthenticated attacker to make page-template resolution include a chosen readable local `.php` file outside the active theme directories, leading to remote code execution

HIGH NVD Recent 2026-09-24

CVE-2026-90560:zstd-jni versions 1.2.0 through 1.5.7-13 contain an out-of-bounds read vulnerability in the ZstdDictDecompress construct

zstd-jni versions 1.2.0 through 1.5.7-13 contain an out-of-bounds read vulnerability in the ZstdDictDecompress constructor because offset and length arguments are never validated against the dictionary array bounds. Attackers can supply arbitrary offset o

HIGH NVD Recent 2026-09-24

CVE-2026-90559:snappy-java through 1.1.10.8 contains an out-of-bounds write vulnerability in Snappy.uncompress(ByteBuffer, ByteBuffer)

snappy-java through 1.1.10.8 contains an out-of-bounds write vulnerability in Snappy.uncompress(ByteBuffer, ByteBuffer) because destination buffer capacity is never validated against decompressed size. Attackers can supply valid compressed data that decom

站内所有资源、漏洞预警、工具与专题内容仅面向企业授权自测、合规研究与安全运维使用。本站不提供可直接用于非法攻击的程序、载荷或黑产平台入口。