Aggregator
来了!你要的安卓完美云手机方案
1 week 2 days ago
一款个人认为目前最完美的安卓云手机方案。
Тысячи ракет за девять лет. Пентагон готовится к стремительному усилению Китая
1 week 2 days ago
Пекин может резко нарастить запасы гиперзвукового оружия, крылатых ракет и дальнобойных боеприпасов для авиации.
Telegram主要短域名t.me被注册局封锁 多个涉及用户个人和分享的链接无法加载
1 week 2 days ago
2026年7月14日 11:30软件资讯00.93K
沐曦股份唐竹君:从流量洞察到威胁闭环,AI驱动安全运营实践探索
1 week 2 days ago
环境异常 当前环境异常,完成验证后即可继续访问。 去验证
沐曦股份唐竹君:从流量洞察到威胁闭环,AI驱动安全运营实践探索
1 week 2 days ago
AI驱动安全运营,本质上是让企业把风险识别、业务判断、协同处置和知识沉淀变成一套可持续进化的运营能力。
CVE-2026-55877 | Symfony ux-icons SVG cross site scripting
1 week 2 days ago
A vulnerability labeled as problematic has been found in Symfony ux-icons. Affected by this vulnerability is an unknown functionality of the component SVG Handler. Executing a manipulation can lead to cross site scripting.
This vulnerability is tracked as CVE-2026-55877. The attack can be launched remotely. No exploit exists.
The affected component should be upgraded.
vuldb.com
CVE-2026-55878 | Symfony ux-toolkit Recipe Manifest path traversal
1 week 2 days ago
A vulnerability described as critical has been identified in Symfony ux-toolkit. This affects an unknown part of the component Recipe Manifest Handler. The manipulation results in path traversal.
This vulnerability is cataloged as CVE-2026-55878. The attack may be launched remotely. There is no exploit available.
Upgrading the affected component is recommended.
vuldb.com
CVE-2026-10037 | Canonical Ubuntu up to 3.74ubuntu1.0/3.75ubuntu1.0 MIME input validation
1 week 2 days ago
A vulnerability has been found in Canonical Ubuntu up to 3.74ubuntu1.0/3.75ubuntu1.0 and classified as problematic. Affected by this issue is some unknown functionality of the component MIME Handler. Performing a manipulation results in improper input validation.
This vulnerability is reported as CVE-2026-10037. The attack requires a local approach. No exploit exists.
vuldb.com
CVE-2026-54777 | CoreWCF up to 1.8.0/1.9.0 NetNamedPipe Transport race condition
1 week 2 days ago
A vulnerability marked as problematic has been reported in CoreWCF up to 1.8.0/1.9.0. This impacts an unknown function of the component NetNamedPipe Transport. The manipulation leads to race condition.
This vulnerability is referenced as CVE-2026-54777. The attack can only be performed from a local environment. No exploit is available.
vuldb.com
CVE-2026-15112 | Google Chrome up to 150.0.7871.47 Ozone use after free (Nessus ID 325845)
1 week 2 days ago
A vulnerability was found in Google Chrome and classified as critical. This affects an unknown function of the component Ozone. Such manipulation leads to use after free.
This vulnerability is documented as CVE-2026-15112. The attack can be executed remotely. There is not any exploit available.
vuldb.com
CVE-2026-55849 | CycloneDX cyclonedx-node-npm up to 4.x CLI --workspace os command injection
1 week 2 days ago
A vulnerability, which was classified as problematic, has been found in CycloneDX cyclonedx-node-npm up to 4.x. This vulnerability affects unknown code of the component CLI. The manipulation of the argument --workspace leads to os command injection.
This vulnerability is referenced as CVE-2026-55849. The attack can only be performed from a local environment. No exploit is available.
vuldb.com
CVE-2026-15107 | Google Chrome up to 150.0.7871.114 IndexedDB use after free (EUVD-2026-42459 / Nessus ID 326386)
1 week 2 days ago
A vulnerability, which was classified as critical, has been found in Google Chrome up to 150.0.7871.114. Impacted is an unknown function of the component IndexedDB. The manipulation leads to use after free.
This vulnerability is listed as CVE-2026-15107. The attack may be initiated remotely. There is no available exploit.
vuldb.com
CVE-2026-15113 | Google Chrome up to 150.0.7871.47 Autofill use after free (EUVD-2026-42484 / Nessus ID 326386)
1 week 2 days ago
A vulnerability classified as critical has been found in Google Chrome. This vulnerability affects unknown code of the component Autofill. Performing a manipulation results in use after free.
This vulnerability is identified as CVE-2026-15113. The attack can be initiated remotely. There is not any exploit available.
vuldb.com
CVE-2026-15111 | Google Chrome up to 150.0.7871.114 Views use after free (EUVD-2026-42483 / Nessus ID 326386)
1 week 2 days ago
A vulnerability has been found in Google Chrome up to 150.0.7871.114 and classified as critical. The impacted element is an unknown function of the component Views. This manipulation causes use after free.
This vulnerability is registered as CVE-2026-15111. Remote exploitation of the attack is possible. No exploit is available.
vuldb.com
CVE-2026-15114 | Google Chrome up to 150.0.7871.47 Codecs out-of-bounds (EUVD-2026-42485 / Nessus ID 326386)
1 week 2 days ago
A vulnerability was found in Google Chrome. It has been classified as critical. This impacts an unknown function of the component Codecs. Performing a manipulation results in out-of-bounds read.
This vulnerability is reported as CVE-2026-15114. The attack is possible to be carried out remotely. No exploit exists.
vuldb.com
连自己的GitHub都管不好:CISA的844MB凭据泄露,给全行业上了一堂公开课
1 week 2 days ago
CISA的一个承包商在操作过程中,把内部数据发布到了GitHub上一个名为 "Private CISA" 的公共仓库。名字里虽然带个"Private",但仓库可见性是公开的(public)。期间自动告警发了9次无人处理,最后靠外部记者才让CISA才正式进入响应流程。
连自己的GitHub都管不好:CISA的844MB凭据泄露,给全行业上了一堂公开课
1 week 2 days ago
环境异常 当前环境异常,完成验证后即可继续访问。 去验证
Спасение от голода или новая угроза? В ДНК риса встроили человеческий ген ожирения
1 week 2 days ago
Растения начали аномально быстро набирать массу прямо в условиях открытого грунта.
SpaceXAI回应Grok Build上传开发者仓库用于模型训练:谁让你们没自己禁用
1 week 2 days ago