Aggregator
Купили Starlink для анонимности? Поздравляем, ваши координаты теперь обновляют каждые шесть минут
1 month ago
Свобода доступа внезапно получила неприятный побочный эффект.
线下活动|听完这首,不再 Emo:Leon x 少数派萨克斯音乐奏享会
1 month ago
当醇厚旋律邂逅专业音频设备的细腻还原,这是一场属于萨克斯音乐爱好者的专属活动。少数派广州线下体验店联动音频品牌奥世声 Austrian Audio,邀请到知名萨克斯青年演奏家 Leon Music,为
CVE-2026-44278 | Fortinet FortiClientWindows up to 7.2.14/7.4.2 hard-coded key (FG-IR-26-129)
1 month ago
A vulnerability was found in Fortinet FortiClientWindows up to 7.2.14/7.4.2 and classified as problematic. This impacts an unknown function. Executing a manipulation can lead to use of hard-coded cryptographic key
.
This vulnerability is tracked as CVE-2026-44278. The attack is restricted to local execution. No exploit exists.
It is suggested to upgrade the affected component.
vuldb.com
CVE-2026-44277 | Fortinet FortiAuthenticator up to 8.0.2 access control (FG-IR-26-128)
1 month ago
A vulnerability was found in Fortinet FortiAuthenticator up to 6.4.10/6.5.6/6.6.8/8.0.0/8.0.2. It has been classified as critical. Affected is an unknown function. The manipulation leads to improper access controls.
This vulnerability is listed as CVE-2026-44277. The attack may be initiated remotely. There is no available exploit.
vuldb.com
CVE-2026-44279 | Fortinet FortiTokenAndroid up to 5.2.2/6.1.0/6.2.0 improper export of android application components (FG-IR-26-130)
1 month ago
A vulnerability was found in Fortinet FortiTokenAndroid up to 5.2.2/6.1.0/6.2.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality. The manipulation results in improper export of android application components.
This vulnerability is cataloged as CVE-2026-44279. The attack must be initiated from a local position. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2026-42355 | M2Team NanaZip 6.0.1630.0/6.0.1638.0 asar File nlohmann::json::parse recursion
1 month ago
A vulnerability was found in M2Team NanaZip 6.0.1630.0/6.0.1638.0. It has been classified as problematic. Affected by this vulnerability is the function nlohmann::json::parse of the component asar File Handler. This manipulation causes uncontrolled recursion.
The identification of this vulnerability is CVE-2026-42355. It is possible to initiate the attack remotely. There is no exploit available.
Upgrading the affected component is recommended.
vuldb.com
CVE-2026-42442 | M2Team NanaZip 6.0.1630.0/6.0.1638.0 UFS Filesystem Image Parser null pointer dereference
1 month ago
A vulnerability was found in M2Team NanaZip 6.0.1630.0/6.0.1638.0. It has been declared as problematic. Affected by this issue is some unknown functionality of the component UFS Filesystem Image Parser. Such manipulation leads to null pointer dereference.
This vulnerability is referenced as CVE-2026-42442. It is possible to launch the attack remotely. No exploit is available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2026-42443 | M2Team NanaZip 6.0.1630.0/6.0.1638.0 UFS Filesystem Image Parser fs_ipg divide by zero
1 month ago
A vulnerability classified as problematic has been found in M2Team NanaZip 6.0.1630.0/6.0.1638.0. This affects an unknown function of the component UFS Filesystem Image Parser. Performing a manipulation of the argument fs_ipg results in divide by zero.
This vulnerability is reported as CVE-2026-42443. The attack is possible to be carried out remotely. No exploit exists.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2026-42444 | M2Team NanaZip 6.0.1630.0/6.0.1638.0 allocation of resources
1 month ago
A vulnerability classified as problematic was found in M2Team NanaZip 6.0.1630.0/6.0.1638.0. This impacts an unknown function. Executing a manipulation can lead to allocation of resources.
This vulnerability appears as CVE-2026-42444. The attack may be performed from remote. There is no available exploit.
Upgrading the affected component is advised.
vuldb.com
CVE-2026-41612 | Microsoft Visual Studio Code prior 0.4.19 path traversal
1 month ago
A vulnerability was found in Microsoft Visual Studio Code. It has been declared as problematic. This affects an unknown part. The manipulation results in relative path traversal.
This vulnerability is reported as CVE-2026-41612. The attack can be launched remotely. No exploit exists.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2026-42831 | Microsoft Office up to 16.108.26041219 heap-based overflow
1 month ago
A vulnerability described as critical has been identified in Microsoft Office. This affects an unknown function. The manipulation results in heap-based buffer overflow.
This vulnerability was named CVE-2026-42831. The attack may be performed from remote. There is no available exploit.
Upgrading the affected component is recommended.
vuldb.com
Meta 重分配七千员工专注于 AI
1 month ago
Meta 周一通知员工,将重分配七千员工专注于 AI。Meta HR 负责人 Janelle Gale 在一份内部备忘录中称,员工将被调往四个专注构建新 AI 工具和应用的新部门,新部门采用“AI 原生设计架构”,每位员工的经理人数将少于其他部门。截至 2025 年底,Meta 员工总数逾 78,000 人。它最近宣布将裁员八千人。Meta CEO 扎克伯格(Mark Zuckerberg)正将公司的未来押注在 AI 上,他今年初表示计划年内投入 1150 亿至 1350 亿美元,大部分将用于开发新 AI 技术。
CVE-2026-28733 | OpenHarmony up to 6.0 use after free (EUVD-2026-30834)
1 month ago
A vulnerability described as critical has been identified in OpenHarmony up to 6.0. Affected by this issue is some unknown functionality. The manipulation results in use after free.
This vulnerability is known as CVE-2026-28733. Attacking locally is a requirement. No exploit is available.
vuldb.com
CVE-2026-25781 | OpenHarmony up to 6.0 out-of-bounds write (EUVD-2026-30832)
1 month ago
A vulnerability, which was classified as critical, has been found in OpenHarmony up to 6.0. This issue affects some unknown processing. Performing a manipulation results in out-of-bounds write.
This vulnerability was named CVE-2026-25781. The attack needs to be approached locally. There is no available exploit.
vuldb.com
CVE-2026-25850 | OpenHarmony up to 6.0 permissions (EUVD-2026-30831)
1 month ago
A vulnerability, which was classified as critical, was found in OpenHarmony up to 6.0. Impacted is an unknown function. Executing a manipulation can lead to preservation of permissions.
The identification of this vulnerability is CVE-2026-25850. The attack can only be executed locally. There is no exploit available.
vuldb.com
CVE-2026-27766 | OpenHarmony up to 6.0 race condition (EUVD-2026-30830)
1 month ago
A vulnerability has been found in OpenHarmony up to 6.0 and classified as problematic. The affected element is an unknown function. The manipulation leads to signal handler race condition.
This vulnerability is referenced as CVE-2026-27766. The attack can only be performed from a local environment. No exploit is available.
vuldb.com
CVE-2026-41119 | Dell Live Optics certificate validation (dsa-2026-221 / EUVD-2026-30763)
1 month ago
A vulnerability was found in Dell Live Optics. It has been declared as problematic. Impacted is an unknown function. Executing a manipulation can lead to improper certificate validation.
This vulnerability appears as CVE-2026-41119. The attack may be performed from remote. There is no available exploit.
vuldb.com
CVE-2026-42822 | Microsoft Azure Local/Azure Resource Manager improper authentication (EUVD-2026-30787)
1 month ago
A vulnerability categorized as critical has been discovered in Microsoft Azure Local and Azure Resource Manager. This affects an unknown part. Executing a manipulation can lead to improper authentication.
This vulnerability appears as CVE-2026-42822. The attack may be performed from remote. There is no available exploit.
It is advisable to upgrade the affected component.
vuldb.com
CVE-2026-33565 | OpenHarmony up to 6.0 race condition (EUVD-2026-30833)
1 month ago
A vulnerability identified as problematic has been detected in OpenHarmony up to 6.0. Affected by this issue is some unknown functionality. The manipulation leads to signal handler race condition.
This vulnerability is documented as CVE-2026-33565. The attack needs to be performed locally. There is not any exploit available.
vuldb.com