| CVE 編號 | 嚴重性 | 分數 | 產品 | 描述 | 發布日期 |
|---|---|---|---|---|---|
| CVE-2026-8426 | N/A | - | PHP | Concrete CMS 9.5.0 and below does not validate a CSRF token before processi... Concrete CMS 9.5.0 及更低版本在處理對 /dashboard/extend... | 2026-05-21 |
| CVE-2026-8197 | N/A | - | PHP | Concrete CMS 9.5.0 and below is vulnerable to Stored XSS via OAuth integrat... Concrete CMS 9.5.0 及更低版本容易透過 OAuth 整合名稱受... | 2026-05-21 |
| CVE-2026-8134 | N/A | - | PHP | Concrete CMS 9.5.0 and below fails to sanitize path traversal sequences in... 儲存頁面類型編輯器表單佈局時,Concrete CMS 9.5.0 及更低... | 2026-05-21 |
| CVE-2026-8135 | N/A | - | PHP | Concrete CMS 9.5.0 and below is vulnerable to Remote Code Execution due to... 由於 ExpressEntryList 區塊控制器中發生不安全的反序列化... | 2026-05-21 |
| CVE-2026-48241 | 高 | 8.1 | MySQL PHP | Open ISES Tickets before 3.44.2 contains hardcoded MySQL database credentia... 3.44.2 之前的 Open ISES Tickets 在 loader.php(面向公眾... | 2026-05-21 |
| CVE-2026-48242 | 高 | 8.1 | MySQL PHP | Open ISES Tickets before 3.44.2 contains hardcoded MySQL database connectio... 3.44.2 之前的 Open ISES Tickets 在 import_mdb.php 包含... | 2026-05-21 |
| CVE-2026-48236 | 高 | 7.1 | MySQL PHP | Open ISES Tickets before 3.44.2 contains a SQL injection vulnerability in d... 3.44.2 之前的 Open ISES Tickets 在 db_loader.php 中包含... | 2026-05-21 |
| CVE-2026-43501 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ipv6:... 在Linux核心中,以下漏洞已解決: ipv6: rpl: 當重新壓縮... | 2026-05-21 |
| CVE-2026-43499 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: rtmute... 在Linux核心中,以下漏洞已解決: rtmutex:在remove_wait... | 2026-05-21 |
| CVE-2026-43498 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: accel/... 在Linux核心中,以下漏洞已解決: Accel/ivpu:禁止重新匯... | 2026-05-21 |
| CVE-2026-43497 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: fbdev:... 在Linux核心中,以下漏洞已解決: fbdev: udlfb: 將 vm_op... | 2026-05-21 |
| CVE-2026-43502 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net/rd... 在Linux核心中,以下漏洞已解決: net/rds:在訊息排隊之... | 2026-05-21 |
| CVE-2026-43495 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: w... 在Linux核心中,以下漏洞已解決: net: wwan: t7xx:根據... | 2026-05-21 |
| CVE-2026-43496 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net/sc... 在Linux核心中,以下漏洞已解決: net/sched: sch_red:用... | 2026-05-21 |
| CVE-2026-43494 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net/rd... 在Linux核心中,以下漏洞已解決: net/rds:當zerocopy頁... | 2026-05-21 |
| CVE-2026-44047 | 高 | 8.8 | MySQL | An SQL injection vulnerability in the MySQL CNID backend in Netatalk 3.1.0... Netatalk 3.1.0 至 4.4.2 中 MySQL CNID 後端中的 SQL 注入... | 2026-05-21 |
| CVE-2026-6279 | 嚴重 | 9.8 | PHP | The Avada Builder (fusion-builder) plugin for WordPress is vulnerable to Un... WordPress 的 Avada Builder (fusion-builder) 外掛程式在... | 2026-05-21 |
| CVE-2026-9126 | 高 | 8.8 | Chrome | Use after free in DOM in Google Chrome on prior to 148.0.7778.179 allowed a... 在 148.0.7778.179 之前的 Google Chrome 中,在 DOM 中使... | 2026-05-20 |
| CVE-2026-9123 | 高 | 7.5 | Linux OS Chrome | Heap buffer overflow in Chromecast in Google Chrome on Android, Linux, Chro... Android、Linux、148.0.7778.179 之前的 ChromeOS 上的 Goo... | 2026-05-20 |
| CVE-2026-9124 | 中 | 5.3 | Chrome | Insufficient validation of untrusted input in Input in Google Chrome on pri... 在 148.0.7778.179 之前的版本中,Google Chrome 中的「輸... | 2026-05-20 |
| CVE-2026-9121 | 高 | 8.8 | Chrome | Out of bounds read in GPU in Google Chrome on prior to 148.0.7778.179 allow... 在 148.0.7778.179 之前的 Google Chrome 中,GPU 中的越界... | 2026-05-20 |
| CVE-2026-9122 | 中 | 6.5 | Chrome | Out of bounds read in GPU in Google Chrome on Mac prior to 148.0.7778.179 a... 148.0.7778.179 之前的 Mac 上的 Google Chrome 中的 GPU... | 2026-05-20 |
| CVE-2026-9117 | 高 | 7.5 | Linux OS Chrome | Type Confusion in GFX in Google Chrome on Linux, ChromeOS prior to 148.0.77... Linux 上的 Google Chrome 中的 GFX 中存在類型混淆,148.0... | 2026-05-20 |
| CVE-2026-9118 | 高 | 8.8 | Chrome | Use after free in XR in Google Chrome on Windows prior to 148.0.7778.179 al... 在 148.0.7778.179 之前的 Windows 上的 Google Chrome 中... | 2026-05-20 |
| CVE-2026-9119 | 高 | 8.8 | Chrome | Heap buffer overflow in WebRTC in Google Chrome on prior to 148.0.7778.179... 148.0.7778.179 之前的 Google Chrome 中的 WebRTC 中的堆... | 2026-05-20 |
| CVE-2026-9120 | 高 | 8.8 | Chrome | Use after free in WebRTC in Google Chrome prior to 148.0.7778.179 allowed a... 148.0.7778.179 之前的 Google Chrome 中的 WebRTC 中的釋... | 2026-05-20 |
| CVE-2026-9113 | 中 | 4.3 | Chrome | Out of bounds read in GPU in Google Chrome on Mac prior to 148.0.7778.179 a... 148.0.7778.179 之前的 Mac 版 Google Chrome 中的 GPU 越... | 2026-05-20 |
| CVE-2026-9114 | 高 | 8.8 | Chrome | Use after free in QUIC in Google Chrome on prior to 148.0.7778.179 allowed... 在 148.0.7778.179 之前的 Google Chrome 中使用 QUIC 中的... | 2026-05-20 |
| CVE-2026-9115 | 中 | 4.3 | Chrome | Insufficient policy enforcement in Service Worker in Google Chrome on prior... 148.0.7778.179 之前的 Google Chrome 中 Service Worker... | 2026-05-20 |
| CVE-2026-9116 | 中 | 4.3 | Chrome | Insufficient policy enforcement in ServiceWorker in Google Chrome on prior... 148.0.7778.179 之前的 Google Chrome 中 ServiceWorker 中... | 2026-05-20 |
| CVE-2026-9112 | 高 | 8.8 | Chrome | Use after free in GPU in Google Chrome on Windows prior to 148.0.7778.179 a... 148.0.7778.179 之前的 Windows 上的 Google Chrome 中的 G... | 2026-05-20 |
| CVE-2026-9110 | 中 | 4.2 | Chrome | Inappropriate implementation in UI in Google Chrome on Windows prior to 148... 148.0.7778.179 之前的 Windows 上的 Google Chrome 中的 U... | 2026-05-20 |
| CVE-2026-9111 | 高 | 8.8 | Linux OS Chrome | Use after free in WebRTC in Google Chrome on Linux prior to 148.0.7778.179... 在 148.0.7778.179 之前的 Linux 上的 Google Chrome 中的... | 2026-05-20 |
| CVE-2026-39850 | 高 | 7.4 | PHP | Yii 2 is a PHP application framework. Versions 2.0.54 and prior contain fla... Yii 2 是一個 PHP 應用程式框架。 2.0.54 及之前的版本在核... | 2026-05-20 |
| CVE-2026-24425 | 高 | 8.8 | PHP | Twig versions 2.16.x and 3.9.0 through 3.25.x contain a sandbox bypass vuln... Twig 版本 2.16.x 和 3.9.0 到 3.25.x 在使用 SourcePolicy... | 2026-05-20 |
| CVE-2026-7522 | 高 | 8.8 | PHP | The Advanced Database Cleaner – Premium plugin for WordPress is vulnerable... 進階資料庫清理器 - WordPress 的高階外掛程式在 4.1.0 及... | 2026-05-20 |
| CVE-2026-7637 | 嚴重 | 9.8 | PHP | The Boost plugin for WordPress is vulnerable to PHP Object Injection in ver... WordPress 的 Boost 外掛程式在 2.0.3 及更高版本中,透過... | 2026-05-20 |
| CVE-2026-8624 | 中 | 6.1 | PHP | The LJ comments import: reloaded plugin for WordPress is vulnerable to Refl... LJ 評論匯入:由於輸入清理和輸出轉義不足,在 0.97.1 及之... | 2026-05-20 |
| CVE-2026-8626 | 中 | 6.1 | PHP | The SponsorMe plugin for WordPress is vulnerable to Reflected Cross-Site Sc... 由於輸入清理和輸出轉義不足,WordPress 的 SponsorMe 外掛... | 2026-05-20 |
| CVE-2026-8627 | 中 | 6.1 | PHP | The Correct Prices plugin for WordPress is vulnerable to Reflected Cross-Si... WordPress 的正確價格外掛程式在 1.0 及以下版本中容易透過... | 2026-05-20 |
| CVE-2026-6555 | 嚴重 | 9.8 | PHP | The ProSolution WP Client plugin for WordPress is vulnerable to Arbitrary F... WordPress 的 ProSolution WP 用戶端外掛程式在 2.0.0 及以... | 2026-05-20 |
| CVE-2026-6072 | 中 | 6.5 | PHP | The Oliver POS – A WooCommerce Point of Sale (POS) plugin for WordPress is... Oliver POS – WordPress 的 WooCommerce 銷售點 (POS) 外掛... | 2026-05-20 |
| CVE-2026-34216 | 中 | 6.6 | PHP | CtrlPanel is open-source billing software for hosting providers. In version... CtrlPanel 是託管提供者的開源計費軟體。在版本 1.1.1 及之... | 2026-05-19 |
| CVE-2026-8711 | 高 | 8.1 | Linux OS | NGINX JavaScript has a vulnerability when the js_fetch_proxy directive is c... 當 js_fetch_proxy 指令配置了至少一個客戶端控制的 NGINX... | 2026-05-19 |
| CVE-2026-47323 | 嚴重 | 9.8 | Apache | Camel-CXF and Camel-Knative Message Header Injection via Missing Inbound Fi... 透過缺少入站過濾進行 Camel-CXF 和 Camel-Knative 訊息頭... | 2026-05-19 |
| CVE-2026-43633 | 嚴重 | 10 | PHP | HestiaCP versions 1.9.0 through 1.9.4 contain a deserialization vulnerabili... HestiaCP 版本 1.9.0 到 1.9.4 在 Web 終端元件中包含一個... | 2026-05-19 |
| CVE-2026-42099 | N/A | - | PHP | Sparx Pro Cloud Server is vulnerable to a Race Condition in the /data_api/d... Sparx Pro Cloud Server 容易受到 /data_api/dl_internal_a... | 2026-05-19 |
| CVE-2025-14575 | N/A | - | Linux OS | An Uncontrolled Search Path Element vulnerability in the OpenSSL TLS backen... Qt Qt Framework (Unix) 中 Qt Network (qtbase) 的 OpenSS... | 2026-05-19 |
| CVE-2026-4883 | 嚴重 | 9.8 | PHP | The Piotnet Forms plugin for WordPress is vulnerable to arbitrary file uplo... WordPress 的 Piotnet Forms 外掛容易受到任意檔案上傳的攻... | 2026-05-19 |
| CVE-2026-43493 | 嚴重 | 9.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: crypto... 在Linux核心中,以下漏洞已解決: crypto: pcrypt - 修正... | 2026-05-19 |
| CVE-2026-43492 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: lib/cr... 在Linux核心中,以下漏洞已解決: lib/crypto: mpi: 修正... | 2026-05-19 |
| CVE-2026-43491 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: q... 在Linux核心中,以下漏洞已解決: net: qrtr: ns:限制每... | 2026-05-19 |
| CVE-2026-8727 | N/A | - | PHP | The Crawler extension passes the X-T3Crawler-Meta response header from craw... Crawler 擴充將 X-T3Crawler-Meta 回應標頭從已爬網的 URL... | 2026-05-19 |
| CVE-2026-46725 | N/A | - | PHP | The extension passes an attacker-controlled cookie directly to PHP's unseri... 此擴充將攻擊者控制的 cookie 直接傳遞給 PHP 的 unseriali... | 2026-05-19 |
| CVE-2026-4885 | 嚴重 | 9.8 | PHP | The Piotnet Addons for Elementor Pro plugin for WordPress is vulnerable to... WordPress 的 Piotnet Addons for Elementor Pro 外掛程式... | 2026-05-19 |
| CVE-2026-8721 | 嚴重 | 9.8 | Linux OS | Crypt::OpenSSL::PKCS12 versions through 1.94 for Perl truncates passwords w... Perl 的 Crypt::OpenSSL::PKCS12 版本到 1.94 會截斷帶有嵌... | 2026-05-17 |
| CVE-2018-25324 | 中 | 6.2 | Apache PHP | Simple Fields 0.2 through 0.3.5 WordPress Plugin contains a local file incl... Simple Fields 0.2 到 0.3.5 WordPress 外掛包含一個本地檔... | 2026-05-17 |
| CVE-2021-47976 | 高 | 8.8 | PHP | TextPattern CMS 4.9.0-dev contains a remote code execution vulnerability th... TextPattern CMS 4.9.0-dev 包含一個遠端執行程式碼漏洞,... | 2026-05-16 |
| CVE-2021-47956 | 高 | 8.2 | PHP | EgavilanMedia PHPCRUD 1.0 contains an SQL injection vulnerability that allo... EgavilanMedia PHPCRUD 1.0 包含一個 SQL 注入漏洞,允許未... | 2026-05-16 |
| CVE-2026-46367 | 高 | 7.6 | PHP | phpMyFAQ before 4.1.2 contains a stored cross-site scripting vulnerability... 4.1.2 之前的 phpMyFAQ 在 Utils::parseUrl() 中包含一個儲... | 2026-05-15 |
| CVE-2026-46366 | 高 | 7.5 | PHP | phpMyFAQ before 4.1.2 contains an information disclosure vulnerability in t... 4.1.2 先前的 phpMyFAQ 在 getIdFromSolutionId() 方法中包... | 2026-05-15 |
| CVE-2026-46365 | 中 | 5.4 | PHP | phpMyFAQ before 4.1.2 contains a missing authorization vulnerability in the... 4.1.2 之前的 phpMyFAQ 在 DELETE /admin/api/content/tags... | 2026-05-15 |
| CVE-2026-46364 | 嚴重 | 9.8 | PHP | phpMyFAQ before 4.1.2 contains an unauthenticated SQL injection vulnerabili... 4.1.2 之前的 phpMyFAQ 中的BuiltinCaptcha::garbageCollec... | 2026-05-15 |
| CVE-2026-46363 | 中 | 5.4 | PHP | phpMyFAQ before 4.1.2 contains a stored cross-site scripting vulnerability... 4.1.2 之前的 phpMyFAQ 在 FAQ 建立和更新端點中包含一個儲... | 2026-05-15 |
| CVE-2026-46362 | 中 | 6.5 | PHP | phpMyFAQ before 4.1.2 contains an authorization bypass vulnerability in Abs... 4.1.2 之前的 phpMyFAQ 在 AbstractAdministrationControll... | 2026-05-15 |
| CVE-2026-46361 | 中 | 6.9 | PHP | phpMyFAQ before 4.1.2 contains a stored cross-site scripting vulnerability... 4.1.2 之前的 phpMyFAQ 在 search.twig 中包含一個儲存的跨... | 2026-05-15 |
| CVE-2026-46360 | 中 | 5.4 | PHP | phpMyFAQ before 4.1.2 contains a stored cross-site scripting vulnerability... 4.1.2 之前的 phpMyFAQ 在 SvgSanitizer::decodeAllEntitie... | 2026-05-15 |
| CVE-2026-46359 | 高 | 7.5 | PHP | phpMyFAQ before 4.1.2 contains a sql injection vulnerability in CurrentUser... 4.1.2 之前的 phpMyFAQ 在 CurrentUser::setTokenData 中包... | 2026-05-15 |
| CVE-2026-45010 | 嚴重 | 9.1 | PHP | phpMyFAQ before 4.1.2 contains an improper restriction of excessive authent... 4.1.2 之前的 phpMyFAQ 在 /admin/check 端點中包含對過多... | 2026-05-15 |
| CVE-2026-45009 | 中 | 4.3 | PHP | phpMyFAQ before 4.1.2 contains an insufficient authorization vulnerability... 4.1.2 之前的 phpMyFAQ 在 admin-api 路由中包含授權不足的... | 2026-05-15 |
| CVE-2026-45008 | 中 | 6.5 | PHP | phpMyFAQ before 4.1.2 contains a path traversal vulnerability in Client::de... 4.1.2 之前的 phpMyFAQ 在 Client::deleteClientFolder 中... | 2026-05-15 |
| CVE-2026-45007 | 中 | 4.3 | PHP | phpMyFAQ before 4.1.2 contains missing permission checks in ConfigurationTa... 4.1.2 之前的 phpMyFAQ 在 ConfigurationTabController.php... | 2026-05-15 |
| CVE-2021-47964 | 高 | 8.8 | PHP | Schlix CMS 2.2.6-6 contains a remote code execution vulnerability that allo... Schlix CMS 2.2.6-6 包含一個遠端程式碼執行漏洞,允許經過... | 2026-05-15 |
| CVE-2021-47966 | 高 | 8.2 | PHP | PHP Timeclock 1.04 contains time-based and boolean-based blind SQL injectio... PHP Timeclock 1.04 在login.php 的login_userid 參數中包... | 2026-05-15 |
| CVE-2021-47967 | 中 | 6.1 | PHP | PHP Timeclock 1.04 contains multiple cross-site scripting vulnerabilities t... PHP Timeclock 1.04 包含多個跨站點腳本漏洞,允許未經身份... | 2026-05-15 |
| CVE-2021-47959 | 高 | 7.5 | MySQL | WordPress Plugin WPGraphQL 1.3.5 contains a denial of service vulnerability... WordPress 外掛程式 WPGraphQL 1.3.5 包含拒絕服務漏洞,允... | 2026-05-15 |
| CVE-2026-44699 | N/A | - | Linux OS | LibJWT is a C JSON Web Token Library. From 3.0.0 to 3.3.2, libjwt accepts a... LibJWT 是一個 C JSON Web 令牌庫。從 3.0.0 到 3.3.2,lib... | 2026-05-15 |
| CVE-2026-42155 | N/A | - | PHP | Magento Long Term Support (LTS) is an unofficial, community-driven project... Magento 長期支援 (LTS) 是一個非官方的社群驅動項目,提供... | 2026-05-15 |
| CVE-2026-46333 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ptrace... 在Linux核心中,以下漏洞已解決: ptrace:稍微理智的「ge... | 2026-05-15 |
| CVE-2026-43490 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ksmbd:... 在Linux核心中,以下漏洞已解決: ksmbd:驗證繼承的 ACE... | 2026-05-15 |
| CVE-2026-7373 | N/A | - | Linux OS | Rapid7 Metasploit Pro is vulnerable to a local privilege escalation attack... Rapid7 Metasploit Pro 容易受到本機權限提升攻擊,該攻擊... | 2026-05-15 |
| CVE-2026-6811 | 中 | 5.9 | PHP | Stack exhaustion vulnerability in the MongoDB PHP driver can cause applicat... 在異常情況下處理深度嵌套的 BSON 文件(且這些 BSON 文件... | 2026-05-14 |
| CVE-2026-44662 | N/A | - | Linux OS | rust-openssl provides OpenSSL bindings for the Rust programming language. F... rust-openssl 為 Rust 程式語言提供 OpenSSL 綁定。從 0.10... | 2026-05-14 |
| CVE-2026-42327 | N/A | - | Linux OS | rust-openssl provides OpenSSL bindings for the Rust programming language. F... rust-openssl 為 Rust 程式語言提供 OpenSSL 綁定。從 0.9.... | 2026-05-14 |
| CVE-2026-8587 | 高 | 8.8 | Chrome | Use after free in Extensions in Google Chrome on Mac prior to 148.0.7778.16... 148.0.7778.168 之前的 Mac 版 Google Chrome 擴充功能中的... | 2026-05-14 |
| CVE-2026-8586 | 中 | 5.5 | Chrome | Inappropriate implementation in Chromoting in Google Chrome prior to 148.0.... 148.0.7778.168 之前的 Google Chrome 中的 Chromoting 實... | 2026-05-14 |
| CVE-2026-8585 | 高 | 7.5 | Chrome | Inappropriate implementation in Media in Google Chrome on iOS prior to 148.... 148.0.7778.168 之前的 iOS 版 Google Chrome 中的媒體中的... | 2026-05-14 |
| CVE-2026-8584 | 中 | 4.2 | Chrome | Inappropriate implementation in Views in Google Chrome on iOS prior to 148.... 148.0.7778.168 之前的 iOS 版 Google Chrome 中的視圖實作... | 2026-05-14 |
| CVE-2026-8583 | 中 | 5.3 | Chrome | Insufficient policy enforcement in WebXR in Google Chrome on Android prior... 148.0.7778.168 之前的 Android 版 Google Chrome 中的 Web... | 2026-05-14 |
| CVE-2026-8582 | 中 | 5.3 | Chrome | Object lifecycle issue in Dawn in Google Chrome prior to 148.0.7778.168 all... 148.0.7778.168 之前的 Google Chrome 中的 Dawn 中的物件... | 2026-05-14 |
| CVE-2026-8581 | 高 | 8.8 | Chrome | Use after free in GPU in Google Chrome prior to 148.0.7778.168 allowed a re... 148.0.7778.168 之前的 Google Chrome 中的 GPU 釋放後使用... | 2026-05-14 |
| CVE-2026-8580 | 嚴重 | 9.6 | Chrome | Use after free in Mojo in Google Chrome prior to 148.0.7778.168 allowed a r... 在 148.0.7778.168 之前的 Google Chrome 中的 Mojo 中使用... | 2026-05-14 |
| CVE-2026-8579 | 低 | 3.1 | Chrome | Insufficient validation of untrusted input in Skia in Google Chrome prior t... 148.0.7778.168 之前的 Google Chrome 中 Skia 中的不可信... | 2026-05-14 |
| CVE-2026-8578 | 低 | 3.1 | Linux OS Chrome | Out of bounds read in GPU in Google Chrome on Linux prior to 148.0.7778.168... 148.0.7778.168 之前的 Linux 上的 Google Chrome 中的 GPU... | 2026-05-14 |
| CVE-2026-8577 | 高 | 8.8 | Chrome | Integer overflow in Fonts in Google Chrome prior to 148.0.7778.168 allowed... 148.0.7778.168 之前的 Google Chrome 字體中的整數溢位允... | 2026-05-14 |
| CVE-2026-8576 | 中 | 4.3 | Linux OS Chrome | Inappropriate implementation in CORS in Google Chrome on Linux and ChromeOS... 148.0.7778.168 之前的 Linux 和 ChromeOS 上的 Google Chr... | 2026-05-14 |
| CVE-2026-8575 | 高 | 8.3 | Chrome | Use after free in UI in Google Chrome prior to 148.0.7778.168 allowed a rem... 148.0.7778.168 之前的 Google Chrome 中的 UI 中的「釋放... | 2026-05-14 |
| CVE-2026-8574 | 高 | 8.3 | Chrome | Use after free in Core in Google Chrome on Windows prior to 148.0.7778.168... 在 148.0.7778.168 之前的 Windows 上,在 Google Chrome... | 2026-05-14 |
| CVE-2026-8573 | 高 | 8.3 | Chrome | Integer overflow in Codecs in Google Chrome on Windows prior to 148.0.7778.... 148.0.7778.168 之前的 Windows 上 Google Chrome 的編解碼... | 2026-05-14 |
| CVE-2026-8572 | 低 | 3.1 | Chrome | Insufficient policy enforcement in Network in Google Chrome on Android prio... 148.0.7778.168 之前的 Android 版 Google Chrome 中的網路... | 2026-05-14 |
| CVE-2026-8571 | 高 | 8.3 | Chrome | Insufficient policy enforcement in GPU in Google Chrome on Android prior to... 148.0.7778.168 之前的 Android 版 Google Chrome 中 GPU... | 2026-05-14 |
| CVE-2026-8570 | 中 | 6.5 | Chrome | Type Confusion in V8 in Google Chrome prior to 148.0.7778.168 allowed a rem... 148.0.7778.168 之前的 Google Chrome V8 中的類型混淆允許... | 2026-05-14 |
| CVE-2026-8569 | 高 | 8.3 | Chrome | Out of bounds write in Codecs in Google Chrome on Mac prior to 148.0.7778.1... 148.0.7778.168 之前的 Mac 上的 Google Chrome 中的編解碼... | 2026-05-14 |
| CVE-2026-8568 | 低 | 3.1 | Chrome | Insufficient policy enforcement in AI in Google Chrome prior to 148.0.7778.... 148.0.7778.168 之前的 Google Chrome 中的 AI 策略執行不... | 2026-05-14 |
| CVE-2026-8567 | 中 | 4.3 | Chrome | Integer overflow in ANGLE in Google Chrome on Windows prior to 148.0.7778.1... 148.0.7778.168 之前的 Windows 上的 Google Chrome 中的 A... | 2026-05-14 |
| CVE-2026-8566 | 中 | 4.3 | Chrome | Insufficient policy enforcement in Payments in Google Chrome on Android pri... 148.0.7778.168 之前的 Android 版 Google Chrome 中的支付... | 2026-05-14 |
| CVE-2026-8565 | 中 | 4.7 | Chrome | Inappropriate implementation in Downloads in Google Chrome on Mac prior to... 148.0.7778.168 之前的 Mac 版 Google Chrome 中的“下載”實... | 2026-05-14 |
| CVE-2026-8564 | 中 | 4.2 | Chrome | Incorrect security UI in Downloads in Google Chrome on Android and Mac prio... 148.0.7778.168 之前的 Android 和 Mac 版 Google Chrome... | 2026-05-14 |
| CVE-2026-8563 | 中 | 4.3 | Chrome | Insufficient policy enforcement in IFrame Sandbox in Google Chrome on Windo... 148.0.7778.168 之前的 Windows 上的 Google Chrome 中的 I... | 2026-05-14 |
| CVE-2026-8562 | 中 | 4.3 | Chrome | Side-channel information leakage in Navigation in Google Chrome prior to 14... 148.0.7778.168 之前的 Google Chrome 導覽中的側通道資訊... | 2026-05-14 |
| CVE-2026-8561 | 中 | 5.4 | Chrome | Incorrect security UI in Fullscreen in Google Chrome prior to 148.0.7778.16... 148.0.7778.168 之前的 Google Chrome 中的全螢幕安全 UI... | 2026-05-14 |
| CVE-2026-8560 | 中 | 4.3 | Chrome | Heap buffer overflow in SwiftShader in Google Chrome on Mac and iOS prior t... Mac 和 iOS 148.0.7778.168 先前版本的 Google Chrome 中的... | 2026-05-14 |
| CVE-2026-8559 | 中 | 4.3 | Chrome | Integer overflow in Internationalization in Google Chrome on Windows prior... 148.0.7778.168 之前的 Windows 上的 Google Chrome 國際化... | 2026-05-14 |
| CVE-2026-8558 | 高 | 8.8 | Chrome | Out of bounds write in Fonts in Google Chrome prior to 148.0.7778.168 allow... 148.0.7778.168 之前的 Google Chrome 中的字體越界寫入允... | 2026-05-14 |
| CVE-2026-8557 | 高 | 7.5 | Chrome | Use after free in Accessibility in Google Chrome prior to 148.0.7778.168 al... 148.0.7778.168 之前的 Google Chrome 中的輔助功能中的釋... | 2026-05-14 |
| CVE-2026-8556 | 低 | 3.1 | Chrome | Inappropriate implementation in ANGLE in Google Chrome on Windows prior to... 148.0.7778.168 之前的 Windows 上的 Google Chrome 中的 A... | 2026-05-14 |
| CVE-2026-8555 | 高 | 8.8 | Chrome | Use after free in GTK in Google Chrome on Windows prior to 148.0.7778.168 a... 在 148.0.7778.168 之前的 Windows 上,在 Google Chrome... | 2026-05-14 |
| CVE-2026-8554 | 低 | 3.1 | Chrome | Type Confusion in ANGLE in Google Chrome on Windows prior to 148.0.7778.168... 148.0.7778.168 之前的 Windows 上的 Google Chrome 中的 A... | 2026-05-14 |
| CVE-2026-8553 | 低 | 3.1 | Chrome | Use after free in GPU in Google Chrome prior to 148.0.7778.168 allowed a re... 148.0.7778.168 之前的 Google Chrome 中的 GPU 中的釋放後... | 2026-05-14 |
| CVE-2026-8552 | 中 | 4.3 | Chrome | Heap buffer overflow in GPU in Google Chrome on Android prior to 148.0.7778... 148.0.7778.168 之前的 Android 版 Google Chrome 中的 GPU... | 2026-05-14 |
| CVE-2026-8551 | 高 | 8.8 | Chrome | Use after free in Downloads in Google Chrome prior to 148.0.7778.168 allowe... 148.0.7778.168 之前的 Google Chrome 中的「下載」中的「... | 2026-05-14 |
| CVE-2026-8550 | 中 | 6.5 | Chrome | Use after free in Google Lens in Google Chrome prior to 148.0.7778.168 allo... 148.0.7778.168 之前的 Google Chrome 中的 Google Lens 中... | 2026-05-14 |
| CVE-2026-8549 | 高 | 8.8 | Chrome | Use after free in Media in Google Chrome prior to 148.0.7778.168 allowed a... 在 148.0.7778.168 之前的 Google Chrome Media 中使用 aft... | 2026-05-14 |
| CVE-2026-8548 | 高 | 8.3 | Chrome | Out of bounds write in Media in Google Chrome prior to 148.0.7778.168 allow... 148.0.7778.168 之前的 Google Chrome 中的媒體越界寫入允... | 2026-05-14 |
| CVE-2026-8547 | 高 | 7.5 | Chrome | Insufficient policy enforcement in Passwords in Google Chrome on Windows pr... 148.0.7778.168 之前的 Windows 上 Google Chrome 中的密碼... | 2026-05-14 |
| CVE-2026-8546 | 中 | 5.3 | Chrome | Out of bounds read in GPU in Google Chrome on Mac and Windows prior to 148.... 148.0.7778.168 之前的 Mac 和 Windows 上的 Google Chrome... | 2026-05-14 |
| CVE-2026-8545 | 低 | 3.1 | Chrome | Object corruption in Compositing in Google Chrome prior to 148.0.7778.168 a... 148.0.7778.168 之前的 Google Chrome 中的合成中的物件損... | 2026-05-14 |
| CVE-2026-8544 | 高 | 8.8 | Chrome | Use after free in Media in Google Chrome prior to 148.0.7778.168 allowed a... 在 148.0.7778.168 之前的 Google Chrome Media 中使用 aft... | 2026-05-14 |
| CVE-2026-8543 | 中 | 5.3 | Chrome | Out of bounds read in FileSystem in Google Chrome on Mac prior to 148.0.777... 148.0.7778.168 之前的 Mac 上的 Google Chrome 中的檔案系... | 2026-05-14 |
| CVE-2026-8542 | 高 | 8.3 | Chrome | Use after free in Core in Google Chrome on Windows prior to 148.0.7778.168... 在 148.0.7778.168 之前的 Windows 上,在 Google Chrome... | 2026-05-14 |
| CVE-2026-8541 | 中 | 5.3 | Chrome | Out of bounds read in UI in Google Chrome prior to 148.0.7778.168 allowed a... 148.0.7778.168 之前的 Google Chrome 中的 UI 越界讀取允... | 2026-05-14 |
| CVE-2026-8540 | 高 | 8.8 | Chrome | Type Confusion in V8 in Google Chrome prior to 148.0.7778.168 allowed a rem... 148.0.7778.168 之前的 Google Chrome V8 中的類型混淆允許... | 2026-05-14 |
| CVE-2026-8539 | 中 | 5.4 | Chrome | Script injection in SanitizerAPI in Google Chrome on Android prior to 148.0... 148.0.7778.168 之前的 Android 版 Google Chrome 中的 San... | 2026-05-14 |
| CVE-2026-8538 | 中 | 5.3 | Chrome | Insufficient validation of untrusted input in GPU in Google Chrome prior to... 在 148.0.7778.168 之前的 Google Chrome 中,對 GPU 中不... | 2026-05-14 |
| CVE-2026-8537 | 中 | 4.3 | Chrome | Insufficient policy enforcement in ViewTransitions in Google Chrome prior t... 148.0.7778.168 之前的 Google Chrome 中 ViewTransitions... | 2026-05-14 |
| CVE-2026-8536 | 低 | 3.1 | Chrome | Insufficient validation of untrusted input in ReadingMode in Google Chrome... 148.0.7778.168 之前的 Mac 版 Google Chrome 中的 Reading... | 2026-05-14 |
| CVE-2026-8535 | 中 | 5.3 | Linux OS Chrome | Out of bounds read in Media in Google Chrome on Linux and ChromeOS prior to... Linux 和 148.0.7778.168 之前的 ChromeOS 上的 Google Chr... | 2026-05-14 |
| CVE-2026-8534 | 高 | 8.3 | Linux OS Chrome | Integer overflow in GPU in Google Chrome on Linux and ChromeOS prior to 148... Linux 和 148.0.7778.168 之前的 ChromeOS 上的 Google Chr... | 2026-05-14 |
| CVE-2026-8533 | 高 | 8.3 | Chrome | Use after free in Accessibility in Google Chrome prior to 148.0.7778.168 al... 148.0.7778.168 先前版本的 Google Chrome 的輔助功能中的... | 2026-05-14 |
| CVE-2026-8532 | 高 | 8.8 | Chrome | Integer overflow in XML in Google Chrome prior to 148.0.7778.168 allowed a... 148.0.7778.168 之前的 Google Chrome 中 XML 中的整數溢位... | 2026-05-14 |
| CVE-2026-8531 | 高 | 8.8 | Chrome | Heap buffer overflow in WebML in Google Chrome on Windows prior to 148.0.77... 148.0.7778.168 之前的 Windows 上的 Google Chrome 中的 W... | 2026-05-14 |
| CVE-2026-8530 | 高 | 8.3 | Chrome | Use after free in Network in Google Chrome on Windows prior to 148.0.7778.1... 148.0.7778.168 之前的 Windows 上的 Google Chrome 網路中... | 2026-05-14 |
| CVE-2026-8529 | 高 | 8.8 | Chrome | Heap buffer overflow in Codecs in Google Chrome prior to 148.0.7778.168 all... 148.0.7778.168 之前的 Google Chrome 編解碼器中的堆緩衝... | 2026-05-14 |
| CVE-2026-8528 | 中 | 4.3 | Chrome | Insufficient validation of untrusted input in SiteIsolation in Google Chrom... 148.0.7778.168 之前的 Google Chrome 中的 SiteIsolation... | 2026-05-14 |
| CVE-2026-8527 | 高 | 8.8 | Chrome | Insufficient validation of untrusted input in Downloads in Google Chrome pr... 148.0.7778.168 之前的 Google Chrome 中的下載中不受信任... | 2026-05-14 |
| CVE-2026-8526 | 高 | 8.8 | Chrome | Out of bounds write in WebRTC in Google Chrome prior to 148.0.7778.168 allo... 148.0.7778.168 之前的 Google Chrome 中的 WebRTC 越界寫... | 2026-05-14 |
| CVE-2026-8525 | 高 | 8.3 | Chrome | Heap buffer overflow in ANGLE in Google Chrome on Mac prior to 148.0.7778.1... 148.0.7778.168 之前的 Mac 版 Google Chrome 中的 ANGLE... | 2026-05-14 |
| CVE-2026-8524 | 高 | 8.8 | Chrome | Out of bounds write in WebAudio in Google Chrome prior to 148.0.7778.168 al... 148.0.7778.168 之前的 Google Chrome 中的 WebAudio 越界... | 2026-05-14 |
| CVE-2026-8523 | 高 | 8.3 | Chrome | Use after free in Mojo in Google Chrome prior to 148.0.7778.168 allowed a r... 148.0.7778.168 之前的 Google Chrome 中的 Mojo 中的「釋... | 2026-05-14 |
| CVE-2026-8522 | 高 | 8.8 | Chrome | Use after free in Downloads in Google Chrome on Mac prior to 148.0.7778.168... 在 148.0.7778.168 之前的 Mac 版 Google Chrome 中使用「... | 2026-05-14 |
| CVE-2026-8521 | 高 | 7.5 | Chrome | Use after free in Tab Groups in Google Chrome prior to 148.0.7778.168 allow... 在 148.0.7778.168 之前的 Google Chrome 標籤組中使用 aft... | 2026-05-14 |
| CVE-2026-8520 | 高 | 8.3 | Chrome | Race in Payments in Google Chrome prior to 148.0.7778.168 allowed a remote... 148.0.7778.168 之前的 Google Chrome 中的付款競態允許遠... | 2026-05-14 |
| CVE-2026-8519 | 高 | 8.8 | Chrome | Integer overflow in ANGLE in Google Chrome on Windows prior to 148.0.7778.1... 148.0.7778.168 之前的 Windows 上的 Google Chrome 中的 A... | 2026-05-14 |
| CVE-2026-8518 | 高 | 8.8 | Chrome | Use after free in Blink in Google Chrome prior to 148.0.7778.168 allowed a... 在 148.0.7778.168 之前的 Google Chrome 中使用 after fre... | 2026-05-14 |
| CVE-2026-8517 | 高 | 8.8 | Chrome | Object lifecycle issue in WebShare in Google Chrome on Mac prior to 148.0.7... 148.0.7778.168 之前的 Mac 版 Google Chrome 中的 WebShar... | 2026-05-14 |
| CVE-2026-8516 | 中 | 5.3 | Chrome | Insufficient validation of untrusted input in DataTransfer in Google Chrome... 148.0.7778.168 之前的 Google Chrome 中的 DataTransfer... | 2026-05-14 |
| CVE-2026-8515 | 高 | 8.3 | Chrome | Use after free in HID in Google Chrome prior to 148.0.7778.168 allowed a re... 148.0.7778.168 之前的 Google Chrome 中的 HID 中的「釋放... | 2026-05-14 |
| CVE-2026-8514 | 高 | 8.3 | Chrome | Use after free in Aura in Google Chrome prior to 148.0.7778.168 allowed a r... 148.0.7778.168 之前的 Google Chrome 中的 Aura 中的釋放... | 2026-05-14 |
| CVE-2026-8513 | 高 | 8.3 | Chrome | Use after free in Input in Google Chrome on Android prior to 148.0.7778.168... 在 148.0.7778.168 之前的 Android 上,Google Chrome 中的... | 2026-05-14 |
| CVE-2026-8512 | 高 | 8.3 | Chrome | Use after free in FileSystem in Google Chrome prior to 148.0.7778.168 allow... 148.0.7778.168 之前的 Google Chrome 中的檔案系統中的釋... | 2026-05-14 |
| CVE-2026-8511 | 嚴重 | 9.6 | Chrome | Use after free in UI in Google Chrome prior to 148.0.7778.168 allowed a rem... 在 148.0.7778.168 之前的 Google Chrome UI 中使用 after... | 2026-05-14 |
| CVE-2026-8510 | 高 | 7.5 | Chrome | Integer overflow in Skia in Google Chrome on Windows prior to 148.0.7778.16... 148.0.7778.168 之前的 Windows 上 Google Chrome 中的 Ski... | 2026-05-14 |
| CVE-2026-8509 | 高 | 8.8 | Chrome | Heap buffer overflow in WebML in Google Chrome prior to 148.0.7778.168 allo... 148.0.7778.168 之前的 Google Chrome 中的 WebML 中的堆緩... | 2026-05-14 |
| CVE-2026-46356 | N/A | - | Linux OS | Fleet is open source device management software. Prior to version 4.80.1, a... Fleet 是開源裝置管理軟體。在版本 4.80.1 之前,Fleet 的... | 2026-05-14 |
| CVE-2026-27886 | 高 | 7.5 | Oracle | Strapi is an open source headless content management system. Strapi version... Strapi 是一個開源無頭內容管理系統。從 4.0.0 開始到 5.37... | 2026-05-14 |
| CVE-2026-44312 | 中 | 5.8 | Linux OS | css_parser is a Ruby CSS parser. Prior to 2.1.0 and 1.22.0, the CSS Parser... css_parser 是一個 Ruby CSS 解析器。在 2.1.0 和 1.22.0... | 2026-05-14 |
| CVE-2026-42597 | 中 | 5.9 | Chrome | Gotenberg is a Docker-powered stateless API for PDF files. Prior to 8.32.0,... Gotenberg 是一個由 Docker 支援的 PDF 檔案無狀態 API。在... | 2026-05-14 |
| CVE-2026-42595 | 高 | 8.6 | Chrome | Gotenberg is a Docker-powered stateless API for PDF files. Prior to 8.32.0,... Gotenberg 是一個由 Docker 支援的 PDF 檔案無狀態 API。在... | 2026-05-14 |
| CVE-2026-42593 | 中 | 5.3 | Chrome | Gotenberg is a Docker-powered stateless API for PDF files. Prior to 8.32.0,... Gotenberg 是一個由 Docker 支援的 PDF 檔案無狀態 API。在... | 2026-05-14 |
| CVE-2026-42592 | 中 | 5.3 | Chrome | Gotenberg is a Docker-powered stateless API for PDF files. Prior to 8.32.0,... Gotenberg 是一個由 Docker 支援的 PDF 檔案無狀態 API。在... | 2026-05-14 |
| CVE-2026-41937 | 高 | 7.2 | PHP | Vvveb before 1.0.8.3 contains an unrestricted file upload vulnerability in... 1.0.8.3之前的Vvveb在插件上傳端點中包含一個不受限制的檔... | 2026-05-14 |
| CVE-2026-41935 | 高 | 7.1 | PHP | Vvveb before 1.0.8.3 contains an uncontrolled recursion vulnerability in th... 1.0.8.3 之前的 Vvveb 在管理控制器調度週期中包含一個不受... | 2026-05-14 |
| CVE-2025-62628 | N/A | - | Linux OS | Unsafe OpenSSL initialization within some AMD optional tools may allow a lo... 某些 AMD 選用工具中不安全的 OpenSSL 初始化可能允許本機... | 2026-05-14 |
| CVE-2026-46446 | 高 | 7.1 | MySQL | SOGo before 5.12.7, when PostgreSQL or MariaDB is used, and cleartext passw... SOGo 5.12.7之前,當使用PostgreSQL或MariaDB,並且儲存明... | 2026-05-14 |
| CVE-2026-45053 | 嚴重 | 9.1 | PHP | CubeCart is an ecommerce software solution. Prior to 6.7.0, an Authenticate... CubeCart 是一個電子商務軟體解決方案。在 6.7.0 之前,Cub... | 2026-05-13 |
| CVE-2026-44377 | 嚴重 | 9.1 | PHP | CubeCart is an ecommerce software solution. Prior to 6.7.0, an Authenticate... CubeCart 是一個電子商務軟體解決方案。在6.7.0之前,CubeC... | 2026-05-13 |
| CVE-2026-42552 | 高 | 7.5 | PHP | Flight is an extensible micro-framework for PHP. Prior to 3.18.1, the defau... Flight 是一個可擴充的 PHP 微框架。在 3.18.1 之前,預設... | 2026-05-13 |
| CVE-2026-42551 | 高 | 7.5 | PHP | Flight is an extensible micro-framework for PHP. Prior to 3.18.1, Request::... Flight 是一個可擴充的 PHP 微框架。在 3.18.1 之前,Reque... | 2026-05-13 |
| CVE-2026-42550 | 高 | 8.8 | PHP | Flight is an extensible micro-framework for PHP. Prior to 3.18.1, SimplePdo... Flight 是一個可擴充的 PHP 微框架。在 3.18.1 之前,Simpl... | 2026-05-13 |
| CVE-2026-42549 | 中 | 4.4 | PHP | Flight is an extensible micro-framework for PHP. Prior to 3.18.1, the make:... Flight 是一個可擴充的 PHP 微框架。在 3.18.1 之前,make:... | 2026-05-13 |
| CVE-2026-42548 | N/A | - | PHP | Flight is an extensible micro-framework for PHP. Prior to 3.18.1, Flight::j... Flight 是一個可擴充的 PHP 微框架。在 3.18.1 之前,Fligh... | 2026-05-13 |
| CVE-2026-43489 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: liveup... 在Linux核心中,以下漏洞已解決: liveupdate: luo_file:... | 2026-05-13 |
| CVE-2026-43488 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: usb: x... 在Linux核心中,以下漏洞已解決: USB:xhci:防止主機控... | 2026-05-13 |
| CVE-2026-43487 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ata: l... 在Linux核心中,以下漏洞已解決: ata:libata-core:在 S... | 2026-05-13 |
| CVE-2026-43486 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: arm64:... 在Linux核心中,以下漏洞已解決: arm64:contpte:修正 s... | 2026-05-13 |
| CVE-2026-43485 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: nouvea... 在Linux核心中,以下漏洞已解決: nouveau/gsp:在 ACPI... | 2026-05-13 |
| CVE-2026-43484 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: mmc: c... 在Linux核心中,以下漏洞已解決: mmc:核心:避免使用位... | 2026-05-13 |
| CVE-2026-43483 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: KVM: S... 在Linux核心中,以下漏洞已解決: KVM:SVM:當 AVIC 啟動... | 2026-05-13 |
| CVE-2026-43482 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: sched_... 在Linux核心中,以下漏洞已解決: sched_ext:停用 scx_cl... | 2026-05-13 |
| CVE-2026-43481 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net-sh... 在Linux核心中,以下漏洞已解決: net-shapers:在 genlms... | 2026-05-13 |
| CVE-2026-43480 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ASoC:... 在Linux核心中,以下漏洞已解決: ASoC:amd:acp3x-rt568... | 2026-05-13 |
| CVE-2026-43479 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: u... 在Linux核心中,以下漏洞已解決: net: usb: lan78xx:修... | 2026-05-13 |
| CVE-2026-43478 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ASoC:... 在Linux核心中,以下漏洞已解決: ASoC:編解碼器:rt1011... | 2026-05-13 |
| CVE-2026-43477 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: drm/i9... 在Linux核心中,以下漏洞已解決: drm/i915/vrr:啟用 TRA... | 2026-05-13 |
| CVE-2026-43476 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: iio: c... 在Linux核心中,以下漏洞已解決: iio:化學:sps30_i2c:... | 2026-05-13 |
| CVE-2026-42946 | 中 | 6.5 | Linux OS | A vulnerability exists in the ngx_http_scgi_module and ngx_http_uwsgi_modul... ngx_http_scgi_module 和 ngx_http_uwsgi_module 模組中存... | 2026-05-13 |
| CVE-2026-42945 | 高 | 8.1 | Linux OS | NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_rewri... NGINX Plus 和 NGINX Open Source 在 ngx_http_rewrite_mod... | 2026-05-13 |
| CVE-2026-42934 | 中 | 4.8 | Linux OS | NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_chars... NGINX Plus 和 NGINX Open Source 在 ngx_http_charset_mod... | 2026-05-13 |
| CVE-2026-42926 | 中 | 5.8 | Linux OS | When NGINX Open Source is configured to proxy HTTP/2 traffic by setting pro... 當 NGINX 開源配置為透過將 proxy_http_version 設定為 2... | 2026-05-13 |
| CVE-2026-40701 | 中 | 4.8 | Linux OS | NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_ssl_m... 當 ssl_verify_client 指令設定為“on”或“可選”,並且 ssl_o... | 2026-05-13 |
| CVE-2026-40460 | 中 | 6.5 | Linux OS | When NGINX Plus or NGINX Open Source are configured to use the HTTP/3 QUIC ... 當 NGINX Plus 或 NGINX Open Source 配置為使用 HTTP/3 QU... | 2026-05-13 |
| CVE-2020-37222 | 高 | 7.2 | PHP | Kuicms Php EE 2.0 contains a persistent cross-site scripting vulnerability... Kuicms Php EE 2.0 包含一個持久性跨站腳本漏洞,允許未經... | 2026-05-13 |
| CVE-2020-37169 | 中 | 5.5 | PHP | WordPress Plugin ultimate-member 2.1.3 contains a local file inclusion vuln... WordPress 外掛程式 Ultimate-member 2.1.3 包含一個本機檔... | 2026-05-13 |
| CVE-2026-39806 | N/A | - | Linux OS | Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in mtr... mtrudel bandit 中存在無法到達退出條件的循環(「無限循環... | 2026-05-13 |
| CVE-2026-3425 | 高 | 8.8 | PHP | The RTMKit Addons for Elementor plugin for WordPress is vulnerable to Local... WordPress 的 RTMKit Addons for Elementor 外掛程式在 2.0... | 2026-05-13 |
| CVE-2026-7635 | 高 | 8.1 | PHP | The coreActivity: Activity Logging for WordPress plugin for WordPress is vu... WordPress 的 coreActivity:WordPress 活動日誌記錄外掛程... | 2026-05-13 |
| CVE-2026-44347 | 中 | 5.8 | Linux OS MySQL | Warpgate is an open source SSH, HTTPS and MySQL bastion host for Linux. Pri... Warpgate 是一款適用於 Linux 的開源 SSH、HTTPS 和 MySQL... | 2026-05-12 |
| CVE-2026-44262 | 嚴重 | 9.4 | PHP | Scramble generates API documentation for Laravel project. From 0.13.2 to be... Scramble 为 Laravel 项目生成 API 文档。從 0.13.2 到 0.1... | 2026-05-12 |
| CVE-2026-44015 | 高 | 8.5 | Linux OS | Nginx UI is a web user interface for the Nginx web server. In 2.3.4 and ear... Nginx UI 是 Nginx Web 伺服器的 Web 使用者介面。在 2.3.4... | 2026-05-12 |
| CVE-2026-42268 | 高 | 7.5 | Linux OS Apache | ModSecurity is an open source, cross platform web application firewall (WAF... ModSecurity 是一個適用於 Apache、IIS 和 Nginx 的開源跨... | 2026-05-12 |
| CVE-2026-40902 | 高 | 7.5 | PHP | PhpSpreadsheet is a pure PHP library for reading and writing spreadsheet fi... PhpSpreadsheet 是一個用於讀取和寫入電子表格檔案的純 PHP... | 2026-05-12 |
| CVE-2026-40863 | 高 | 7.5 | PHP | PhpSpreadsheet is a pure PHP library for reading and writing spreadsheet fi... PhpSpreadsheet 是一個用於讀取和寫入電子表格檔案的純 PHP... | 2026-05-12 |
| CVE-2026-8430 | 高 | 8.1 | Linux OS | SPIP versions prior to 4.4.14 contain a remote code execution vulnerability... 4.4.14 之前的 SPIP 版本包含公共空間中的遠端程式碼執行漏... | 2026-05-12 |
| CVE-2026-44167 | 高 | 7.5 | PHP | phpseclib is a PHP secure communications library. Prior to 1.0.29, 2.0.54,... phpseclib 是一個 PHP 安全通訊函式庫。在 1.0.29、2.0.54... | 2026-05-12 |
| CVE-2025-27723 | N/A | - | Linux OS | Use after free for some Linux kernel driver for the Intel(R) Ethernet 800 s... 在 Ring 0 內使用版本 2.3.14 之前的 Intel(R) 乙太網路 80... | 2026-05-12 |
| CVE-2026-43515 | N/A | - | Apache | Improper Authorization vulnerability when multiple method constraints defin... 當多個方法約束為 Apache Tomcat 中的相同擴充功能定義 HTT... | 2026-05-12 |
| CVE-2026-43514 | 低 | 3.7 | Apache | Observable Timing Discrepancy vulnerability when comparing AJP secret in Ap... 比較 Apache Tomcat 中的 AJP 秘密時可觀察到的時間差異漏... | 2026-05-12 |
| CVE-2026-43513 | N/A | - | Apache | Improper Handling of Case Sensitivity vulnerability in LockOutRealm in Apac... Apache Tomcat 中 LockOutRealm 中的大小寫敏感漏洞處理不... | 2026-05-12 |
| CVE-2026-43512 | N/A | - | Apache | DEPRECATED: Authentication Bypass Issues vulnerability in digest authentica... 已棄用:身份驗證繞過 在 Apache Tomcat 中的摘要身份驗證... | 2026-05-12 |
| CVE-2026-42498 | 高 | 7.3 | Apache | Exposure of HTTP Authentication Header to unexpected hosts during WebSocket... Apache Tomcat 中的 WebSocket 驗證漏洞期間,HTTP 驗證標... | 2026-05-12 |
| CVE-2026-41293 | N/A | - | Apache | Improper Input Validation vulnerability in Apache Tomcat. This issue affec... Apache Tomcat 中的不正確輸入驗證漏洞。 此問題影響 Apac... | 2026-05-12 |
| CVE-2026-41284 | 高 | 7.5 | Apache | Allocation of Resources Without Limits or Throttling vulnerability in Apach... Apache Tomcat 中無限制的資源分配或限制漏洞。 此問題影... | 2026-05-12 |
| CVE-2023-27753 | 高 | 8 | PHP | An arbitrary file upload vulnerability in MK-Auth 23.01K4.9 allows attacker... MK-Auth 23.01K4.9 中的任意檔案上傳漏洞允許攻擊者透過上... | 2026-05-12 |
| CVE-2026-6663 | 中 | 4.8 | PHP | The GWD Connect plugin for WordPress is vulnerable to missing authorization... WordPress 的 GWD Connect 外掛程式在 2.9 及之前的所有版... | 2026-05-12 |
| CVE-2026-6402 | 中 | 5.3 | Chrome | webpack-dev-server versions up to and including 5.2.3 are vulnerable to cro... 當透過非潛在可信任來源(例如純 HTTP)提供服務時,5.2.3... | 2026-05-12 |
| CVE-2026-43884 | 高 | 7.7 | PHP | WWBN AVideo is an open source video platform. In versions up to and includi... WWBN AVideo 是一個開源視訊平台。在 29.0 及之前的版本中... | 2026-05-11 |
| CVE-2026-43876 | 中 | 6.4 | PHP | WWBN AVideo is an open source video platform. In versions up to and includi... WWBN AVideo 是一個開源視訊平台。在 29.0 及之前的版本中... | 2026-05-11 |
| CVE-2026-43873 | 高 | 7.5 | MySQL PHP | WWBN AVideo is an open source video platform. In versions up to and includi... WWBN AVideo 是一個開源視訊平台。在 29.0 及之前的版本中... | 2026-05-11 |
| CVE-2026-41489 | 高 | 8.8 | Linux OS | Pi-hole is a DNS sinkhole that protects devices from unwanted content witho... Pi-hole 是一個 DNS 污水坑,可保護設備免受不必要的內容的... | 2026-05-11 |
| CVE-2026-6093 | N/A | - | MSSQL | Corteza contains a SQL injection vulnerability in its Microsoft SQL Server... 當按元欄位過濾 Compose 記錄時,Corteza 的 Microsoft SQL... | 2026-05-11 |
| CVE-2026-42607 | 嚴重 | 9.1 | PHP | Grav is a file-based Web platform. Prior to 2.0.0-beta.2, an authenticated... Grav 是一個基於文件的 Web 平台。在 2.0.0-beta.2 之前,... | 2026-05-11 |
| CVE-2026-8276 | 低 | 3.7 | MySQL MSSQL | A flaw has been found in bettercap up to 2.41.5. Affected by this issue is... 2.41.5 之前的 bettercap 中已發現一個缺陷。受此問題影響... | 2026-05-11 |
| CVE-2026-6433 | 高 | 7.3 | PHP | The Custom css-js-php WordPress plugin through 2.0.7 does not properly sani... 自 2.0.7 版本開始,自訂 css-js-php WordPress 外掛程式在... | 2026-05-11 |
| CVE-2022-50944 | 高 | 8.8 | PHP | Aero CMS 0.0.1 contains a PHP code injection vulnerability that allows auth... Aero CMS 0.0.1包含一個PHP程式碼注入漏洞,允許經過驗證的... | 2026-05-10 |
| CVE-2021-47943 | 高 | 8.8 | PHP | TextPattern CMS 4.8.7 contains a remote code execution vulnerability that a... TextPattern CMS 4.8.7 包含一個遠端執行程式碼漏洞,允許... | 2026-05-10 |
| CVE-2021-47940 | 嚴重 | 9.8 | PHP | WordPress Plugin Download From Files version 1.48 and earlier contains an a... WordPress 插件从文件下载版本 1.48 及更早版本包含任意文... | 2026-05-10 |
| CVE-2021-47939 | 高 | 8.8 | PHP | Evolution CMS 3.1.6 contains a remote code execution vulnerability that all... Evolution CMS 3.1.6 包含一個遠端程式碼執行漏洞,該漏洞... | 2026-05-10 |
| CVE-2021-47938 | 高 | 8.8 | PHP | ImpressCMS 1.4.2 contains a remote code execution vulnerability in the auto... ImpressCMS 1.4.2 在自動任務管理介面中包含一個遠端執行程... | 2026-05-10 |
| CVE-2021-47936 | 嚴重 | 9.8 | PHP | OpenCATS 0.9.4 contains a remote code execution vulnerability that allows u... OpenCATS 0.9.4 包含一個遠端程式碼執行漏洞,允許未經身份... | 2026-05-10 |
| CVE-2021-47933 | 嚴重 | 9.8 | PHP | WordPress MStore API 2.0.6 contains an arbitrary file upload vulnerability... WordPress MStore API 2.0.6 包含任意檔案上傳漏洞,允許未... | 2026-05-10 |
| CVE-2026-7263 | 高 | 7.5 | PHP | In PHP versions 8.4.* before 8.4.21 and 8.5.* before 8.5.6, DOMNode::C14N()... 在 8.4.21 之前的 PHP 版本 8.4.* 和 8.5.6 之前的 8.5.*... | 2026-05-10 |
| CVE-2026-6104 | 嚴重 | 9.1 | PHP | In PHP versions 8.4.* before 8.4.21 and 8.5.* before 8.5.6, when an encodin... 在 8.4.21 之前的 PHP 版本 8.4.* 和 8.5.6 之前的 8.5.*... | 2026-05-10 |
| CVE-2026-7568 | 高 | 7.5 | PHP | In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.... 在 8.2.31 之前的 PHP 版本 8.2.*、8.3.31 之前的 8.3.*、8... | 2026-05-10 |
| CVE-2026-7262 | 高 | 7.5 | PHP | In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.... 在 8.2.31 之前的 PHP 版本 8.2.*、8.3.31 之前的 8.3.*、8... | 2026-05-10 |
| CVE-2026-7261 | 嚴重 | 9.8 | PHP | In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.... 在 8.2.31 之前的 PHP 版本 8.2.*、8.3.31 之前的 8.3.*、8... | 2026-05-10 |
| CVE-2026-7259 | 中 | 6.5 | PHP | In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.... 在 8.2.31 之前的 PHP 版本 8.2.*、8.3.31 之前的 8.3.*、8... | 2026-05-10 |
| CVE-2026-7258 | 高 | 7.5 | PHP | In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.... 在 8.2.31 之前的 PHP 版本 8.2.*、8.3.31 之前的 8.3.*、8... | 2026-05-10 |
| CVE-2026-6735 | 中 | 6.1 | PHP | In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.... 在 PHP 8.2.31 之前的版本、8.3.31 之前的 8.3.*、8.4.21... | 2026-05-10 |
| CVE-2026-6722 | 嚴重 | 9.8 | Apache PHP | In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.... 在 8.2.31 之前的 PHP 版本 8.2.*、8.3.31 之前的 8.3.*、8... | 2026-05-10 |
| CVE-2025-14179 | 嚴重 | 9.8 | PHP | In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.... 在 8.2.31 之前的 PHP 版本 8.2.*、8.3.31 之前的 8.3.*、8... | 2026-05-10 |
| CVE-2026-42605 | 高 | 8.8 | PHP | AzuraCast is a self-hosted, all-in-one web radio management suite. Prior to... AzuraCast 是一款自架式的一體式網路無線電管理套件。在版... | 2026-05-09 |
| CVE-2026-42569 | 嚴重 | 9.4 | PHP | phpVMS is a PHP application to run and simulate an airline. Prior to versio... phpVMS 是一個用於運行和模擬航空公司的 PHP 應用程式。在... | 2026-05-09 |
| CVE-2026-8209 | N/A | - | PHP | Gibbon versions before v30.0.01 are affected by a path traversal vulnerabil... v30.0.01 之前的 Gibbon 版本受到路徑遍歷漏洞的影響,嘗試... | 2026-05-09 |
| CVE-2026-8208 | N/A | - | PHP | Gibbon versions before v30.0.01 are affected by a local file inclusion vuln... v30.0.01 之前的 Gibbon 版本受到本地檔案包含漏洞的影響,... | 2026-05-09 |
| CVE-2026-42224 | 高 | 7.6 | PHP | ipl/web is a set of common web components for php projects. Prior to versio... ipl/web 是一組用於 php 專案的通用 Web 元件。在 0.13.1... | 2026-05-08 |
| CVE-2026-41517 | N/A | - | PHP | Emlog is an open source website building system. Prior to version 2.6.11, i... Emlog 是一個開源網站建置系統。在版本 2.6.11 之前,不安... | 2026-05-08 |
| CVE-2026-42028 | 中 | 5.3 | PHP | novaGallery is a php image gallery. Prior to version 2.1.1, a path traversa... novaGallery 是一個 php 圖片庫。在2.1.1版本之前,novaGal... | 2026-05-08 |
| CVE-2026-41887 | 中 | 4.9 | PHP | Flarum is open-source forum software. Prior to versions 1.8.16 and 2.0.0-rc... Flarum 是开源论坛软件。在版本 1.8.16 和 2.0.0-rc.1 之前... | 2026-05-08 |
| CVE-2026-43420 | N/A | - | Linux OS PHP | In the Linux kernel, the following vulnerability has been resolved: ceph:... 在Linux核心中,以下漏洞已解決: ceph:修正非同步取消連... | 2026-05-08 |
| CVE-2026-41576 | 高 | 7.1 | PHP | Brave CMS is an open-source CMS. Prior to commit 6c56603, the contact form... Brave CMS 是一款開源 CMS。在提交 6c56603 之前,聯絡表單... | 2026-05-08 |
| CVE-2026-41570 | 高 | 7.8 | PHP | PHPUnit is a testing framework for PHP. In versions 12.5.21 and 13.1.5, PHP... PHPUnit 是一個 PHP 測試框架。在版本 12.5.21 和 13.1.5... | 2026-05-08 |
| CVE-2025-67486 | 高 | 7.2 | PHP | Dolibarr is an enterprise resource planning (ERP) and customer relationship... Dolibarr 是一個企業資源規劃 (ERP) 和客戶關係管理 (CRM)... | 2026-05-08 |
| CVE-2026-43294 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: drm: r... 在Linux核心中,以下漏洞已解決: drm:renesas:rz-du:m... | 2026-05-08 |
| CVE-2026-41496 | 高 | 8.1 | MySQL | PraisonAI is a multi-agent teams system. Prior to praisonai version 4.6.9 a... PraisonAI 是一個多代理團隊系統。在 praisonai 版本 4.6.9... | 2026-05-08 |
| CVE-2026-5127 | 高 | 8.8 | PHP | The User Frontend: AI Powered Frontend Posting, User Directory, Profile, Me... 使用者前端:適用於 WordPress 的 AI 支援的前端發文、使用... | 2026-05-08 |
| CVE-2025-69691 | 嚴重 | 9.9 | PHP | Netgate pfSense CE 2.8.0 allows code execution in the XMLRPC API via pfsens... Netgate pfSense CE 2.8.0 允許透過 pfsense.exec_php 在 X... | 2026-05-08 |
| CVE-2025-69690 | 嚴重 | 9.1 | PHP | Netgate pfSense CE 2.7.2 allows code execution by using the module installe... Netgate pfSense CE 2.7.2 允許使用帶有備份檔案的模組安裝... | 2026-05-08 |
| CVE-2025-67887 | 嚴重 | 9.8 | PHP | 1C-Bitrix through 25.100.500 allows Remote Code Execution because an actor... 1C-Bitrix 到 25.100.500 允許遠端執行程式碼,因為具有翻... | 2026-05-08 |
| CVE-2025-67886 | 中 | 6.3 | PHP | Bitrix24 through 25.100.300 allows Remote Code Execution because an actor w... Bitrix24 到 25.100.300 允許遠端執行程式碼,因為具有翻譯... | 2026-05-08 |
| CVE-2024-33288 | 高 | 7.3 | PHP | Prison Management System Using PHP v1.0 was discovered to contain a SQL inj... 使用 PHP v1.0 的監獄管理系統被發現包含透過管理員登入頁... | 2026-05-08 |
| CVE-2026-44298 | 中 | 4.1 | PHP | Kimai is an open-source time tracking application. From version 2.32.0 to b... Kimai 是一個開源時間追蹤應用程式。從2.32.0版本到2.56.0... | 2026-05-08 |
| CVE-2026-41906 | 高 | 7.1 | PHP | FreeScout is a free help desk and shared inbox built with PHP's Laravel fra... FreeScout 是一個使用 PHP 的 Laravel 框架建立的免費幫助... | 2026-05-07 |
| CVE-2026-41905 | 高 | 7.7 | PHP | FreeScout is a free help desk and shared inbox built with PHP's Laravel fra... FreeScout 是一個使用 PHP 的 Laravel 框架建立的免費幫助... | 2026-05-07 |
| CVE-2026-41904 | 高 | 7.6 | PHP | FreeScout is a free help desk and shared inbox built with PHP's Laravel fra... FreeScout 是一個使用 PHP 的 Laravel 框架建立的免費幫助... | 2026-05-07 |
| CVE-2026-41903 | 中 | 5.4 | PHP | FreeScout is a free help desk and shared inbox built with PHP's Laravel fra... FreeScout 是一個使用 PHP 的 Laravel 框架建立的免費幫助... | 2026-05-07 |
| CVE-2026-41902 | 嚴重 | 9.1 | PHP | FreeScout is a free help desk and shared inbox built with PHP's Laravel fra... FreeScout 是一個使用 PHP 的 Laravel 框架建立的免費幫助... | 2026-05-07 |
| CVE-2026-36388 | 中 | 5.4 | PHP | A Cross-Site Scripting (XSS) vulnerability was found in PHPGurukal Hospital... PHPGurukal 医院管理系统 v4.0 的 /hospital/hms/edit-prof... | 2026-05-07 |
| CVE-2026-41143 | 高 | 8.8 | PHP | YesWiki is a wiki system written in PHP. Prior to version 4.6.1, YesWiki ba... YesWiki是一個用PHP寫的wiki系統。在版本4.6.1之前,YesWik... | 2026-05-07 |
| CVE-2026-41587 | N/A | - | PHP | CI4MS is a CodeIgniter 4-based CMS skeleton that delivers a production-read... CI4MS 是基於 CodeIgniter 4 的 CMS 框架,可提供具有 RBAC... | 2026-05-07 |
| CVE-2026-41203 | N/A | - | PHP | CI4MS is a CodeIgniter 4-based CMS skeleton that delivers a production-read... CI4MS 是基於 CodeIgniter 4 的 CMS 框架,可提供具有 RBAC... | 2026-05-07 |
| CVE-2026-41202 | N/A | - | PHP | CI4MS is a CodeIgniter 4-based CMS skeleton that delivers a production-read... CI4MS 是基於 CodeIgniter 4 的 CMS 框架,可提供具有 RBAC... | 2026-05-07 |
| CVE-2026-40004 | 中 | 5.5 | Linux OS | There exists an openssl.cnf privilege escalation vulnerability in ZTE Cloud... 中興雲PC客戶端uSmartview存在openssl.cnf提權漏洞。攻擊者... | 2026-05-07 |
| CVE-2026-40296 | 中 | 5.4 | PHP | PhpSpreadsheet is a pure PHP library for reading and writing spreadsheet fi... PhpSpreadsheet 是一個用於讀取和寫入電子表格檔案的純 PHP... | 2026-05-06 |
| CVE-2026-8022 | 低 | 3.1 | Chrome | Inappropriate implementation in MHTML in Google Chrome prior to 148.0.7778.... 148.0.7778.96 之前的 Google Chrome 中的 MHTML 實作不當... | 2026-05-06 |
| CVE-2026-8021 | 中 | 4.2 | Chrome | Script injection in UI in Google Chrome prior to 148.0.7778.96 allowed a re... 148.0.7778.96 之前的 Google Chrome 中的 UI 中的腳本注入... | 2026-05-06 |
| CVE-2026-8020 | 中 | 5.3 | Chrome | Uninitialized Use in GPU in Google Chrome on Android prior to 148.0.7778.96... 148.0.7778.96 之前的 Android 版 Google Chrome 中的 GPU... | 2026-05-06 |
| CVE-2026-8019 | 中 | 5.4 | Chrome | Insufficient policy enforcement in WebApp in Google Chrome prior to 148.0.7... 148.0.7778.96 之前的 Google Chrome 中 WebApp 中的策略執... | 2026-05-06 |
| CVE-2026-8018 | 高 | 8.1 | Chrome | Insufficient policy enforcement in DevTools in Google Chrome prior to 148.0... 148.0.7778.96 之前的 Google Chrome 中的 DevTools 中的策... | 2026-05-06 |
| CVE-2026-8017 | 低 | 3.1 | Chrome | Side-channel information leakage in Media in Google Chrome prior to 148.0.7... 148.0.7778.96 之前的 Google Chrome 媒體中的側通道資訊洩... | 2026-05-06 |
| CVE-2026-8016 | 高 | 8.8 | Chrome | Use after free in WebRTC in Google Chrome prior to 148.0.7778.96 allowed a... 在 148.0.7778.96 之前的 Google Chrome 中的 WebRTC 中使... | 2026-05-06 |
| CVE-2026-8015 | 中 | 5.4 | Chrome | Inappropriate implementation in Media in Google Chrome prior to 148.0.7778.... 148.0.7778.96 之前的 Google Chrome 媒體中的不當實作允許... | 2026-05-06 |
| CVE-2026-8014 | 中 | 4.3 | Chrome | Inappropriate implementation in Preload in Google Chrome prior to 148.0.777... 148.0.7778.96 之前的 Google Chrome 中的 Preload 實施不... | 2026-05-06 |
| CVE-2026-8013 | 中 | 4.3 | Chrome | Insufficient validation of untrusted input in FedCM in Google Chrome prior... 148.0.7778.96 之前的 Google Chrome 中 FedCM 中的不受信... | 2026-05-06 |
| CVE-2026-8012 | 中 | 5.4 | Chrome | Inappropriate implementation in MHTML in Google Chrome prior to 148.0.7778.... 148.0.7778.96 之前的 Google Chrome 中的 MHTML 中的不當... | 2026-05-06 |
| CVE-2026-8011 | 中 | 4.3 | Chrome | Insufficient policy enforcement in Search in Google Chrome prior to 148.0.7... 148.0.7778.96 之前的 Google Chrome 搜尋中的策略執行不充... | 2026-05-06 |
| CVE-2026-8010 | 中 | 6.3 | Chrome | Insufficient validation of untrusted input in SiteIsolation in Google Chrom... 148.0.7778.96 之前的 Google Chrome 中的 SiteIsolation... | 2026-05-06 |
| CVE-2026-8009 | 中 | 5 | Chrome | Inappropriate implementation in Cast in Google Chrome prior to 148.0.7778.9... 148.0.7778.96 之前的 Google Chrome 中的 Cast 中的不當實... | 2026-05-06 |
| CVE-2026-8008 | 中 | 5.4 | Chrome | Inappropriate implementation in DevTools in Google Chrome prior to 148.0.77... 148.0.7778.96 之前的 Google Chrome 中的 DevTools 中的不... | 2026-05-06 |
| CVE-2026-8007 | 高 | 7.5 | Chrome | Insufficient validation of untrusted input in Cast in Google Chrome prior t... 在 148.0.7778.96 之前的版本中,Google Chrome 中的 Cast... | 2026-05-06 |
| CVE-2026-8006 | 中 | 5.4 | Chrome | Insufficient policy enforcement in DevTools in Google Chrome prior to 148.0... 148.0.7778.96 之前的 Google Chrome 中的 DevTools 中的策... | 2026-05-06 |
| CVE-2026-8005 | 中 | 4.3 | Chrome | Insufficient validation of untrusted input in Cast in Google Chrome prior t... 148.0.7778.96 之前的 Google Chrome 中的 Cast 中的不受信... | 2026-05-06 |
| CVE-2026-8004 | 中 | 4.3 | Chrome | Insufficient policy enforcement in DevTools in Google Chrome prior to 148.0... 148.0.7778.96 之前的 Google Chrome 中的 DevTools 中的策... | 2026-05-06 |
| CVE-2026-8003 | 中 | 5.4 | Chrome | Insufficient validation of untrusted input in TabGroups in Google Chrome pr... 148.0.7778.96 之前的 Google Chrome 中 TabGroup 中的不受... | 2026-05-06 |
| CVE-2026-8002 | 高 | 8.8 | Chrome | Use after free in Audio in Google Chrome on Mac prior to 148.0.7778.96 allo... 在 148.0.7778.96 之前的 Mac 上的 Google Chrome 音訊中使... | 2026-05-06 |
| CVE-2026-8001 | 高 | 8.3 | Linux OS Chrome | Use After Free in Printing in Google Chrome on Linux, Mac, ChromeOS prior t... 在 Linux、Mac 上的 Google Chrome 中使用 After Free 進行... | 2026-05-06 |
| CVE-2026-8000 | 高 | 8.8 | Chrome | Insufficient validation of untrusted input in ChromeDriver in Google Chrome... 148.0.7778.96 之前的 Windows 上的 Google Chrome 中的 Ch... | 2026-05-06 |
| CVE-2026-7999 | 中 | 4.3 | Chrome | Inappropriate implementation in V8 in Google Chrome prior to 148.0.7778.96... 148.0.7778.96 之前的 Google Chrome V8 中的不當實作允許... | 2026-05-06 |
| CVE-2026-7998 | 中 | 5.4 | Chrome | Insufficient validation of untrusted input in Dialog in Google Chrome prior... 148.0.7778.96 之前的版本中,Google Chrome 中的對話方塊... | 2026-05-06 |
| CVE-2026-7997 | 高 | 7.8 | Chrome | Insufficient validation of untrusted input in Updater in Google Chrome on M... 148.0.7778.96 之前的 Mac 上 Google Chrome 的更新程式中... | 2026-05-06 |
| CVE-2026-7996 | 中 | 4.2 | Chrome | Insufficient validation of untrusted input in SSL in Google Chrome prior to... 在 148.0.7778.96 之前的 Google Chrome 中,對 SSL 中不可... | 2026-05-06 |
| CVE-2026-7995 | 高 | 8.8 | Chrome | Out of bounds read in AdFilter in Google Chrome prior to 148.0.7778.96 allo... 148.0.7778.96 之前的 Google Chrome 中的 AdFilter 中的越... | 2026-05-06 |
| CVE-2026-7994 | 高 | 7.8 | Chrome | Inappropriate implementation in Chromoting in Google Chrome on Windows prio... 148.0.7778.96 之前的 Windows 上的 Google Chrome 中的 Ch... | 2026-05-06 |
| CVE-2026-7993 | 中 | 4.2 | Chrome | Insufficient validation of untrusted input in Payments in Google Chrome on... 148.0.7778.96 之前的 Android 版 Google Chrome 中的付款... | 2026-05-06 |
| CVE-2026-7992 | 高 | 8.8 | Linux OS Chrome | Insufficient validation of untrusted input in UI in Google Chrome on Linux,... Linux 上的 Google Chrome、148.0.7778.96 之前的 ChromeOS... | 2026-05-06 |
| CVE-2026-7991 | 高 | 8.8 | Chrome | Use after free in UI in Google Chrome prior to 148.0.7778.96 allowed a remo... 148.0.7778.96 之前的 Google Chrome 中的 UI 中的「釋放後... | 2026-05-06 |
| CVE-2026-7990 | 高 | 7.8 | Chrome | Insufficient validation of untrusted input in Updater in Google Chrome on W... 148.0.7778.96 之前的 Windows 上的 Google Chrome 更新程... | 2026-05-06 |
| CVE-2026-7989 | 中 | 4.2 | Chrome | Insufficient data validation in DataTransfer in Google Chrome prior to 148.... 148.0.7778.96 之前的 Google Chrome 中的 DataTransfer 中... | 2026-05-06 |
| CVE-2026-7988 | 高 | 8.8 | Chrome | Type Confusion in WebRTC in Google Chrome prior to 148.0.7778.96 allowed a... 148.0.7778.96 之前的 Google Chrome 中的 WebRTC 中的類型... | 2026-05-06 |
| CVE-2026-7987 | 高 | 8.8 | Chrome | Use after free in WebRTC in Google Chrome prior to 148.0.7778.96 allowed a... 在 148.0.7778.96 之前的 Google Chrome 中的 WebRTC 中使... | 2026-05-06 |
| CVE-2026-7986 | 中 | 4.3 | Chrome | Insufficient policy enforcement in Autofill in Google Chrome prior to 148.0... 148.0.7778.96 之前的 Google Chrome 中的自動填入策略執行... | 2026-05-06 |
| CVE-2026-7985 | 高 | 8.3 | Chrome | Use after free in GPU in Google Chrome prior to 148.0.7778.96 allowed a rem... 148.0.7778.96 之前的 Google Chrome 中的 GPU 中的釋放後... | 2026-05-06 |
| CVE-2026-7984 | 高 | 8.8 | Chrome | Use after free in ReadingMode in Google Chrome prior to 148.0.7778.96 allow... 在 148.0.7778.96 之前的 Google Chrome 中,在 ReadingMod... | 2026-05-06 |
| CVE-2026-7983 | 中 | 4.3 | Chrome | Out of bounds read in Dawn in Google Chrome prior to 148.0.7778.96 allowed... 148.0.7778.96 之前的 Google Chrome 中的 Dawn 中的越界讀... | 2026-05-06 |
| CVE-2026-7982 | 中 | 6.5 | Chrome | Uninitialized Use in WebCodecs in Google Chrome prior to 148.0.7778.96 allo... 148.0.7778.96 之前的 Google Chrome 中的 WebCodecs 中的... | 2026-05-06 |
| CVE-2026-7981 | 高 | 8.1 | Chrome | Out of bounds read in Codecs in Google Chrome prior to 148.0.7778.96 allowe... 148.0.7778.96 之前的 Google Chrome 中的編解碼器越界讀取... | 2026-05-06 |
| CVE-2026-7980 | 高 | 8.8 | Chrome | Use after free in WebAudio in Google Chrome prior to 148.0.7778.96 allowed... 在 148.0.7778.96 之前的 Google Chrome 中的 WebAudio 中... | 2026-05-06 |
| CVE-2026-7979 | 中 | 4.3 | Chrome | Inappropriate implementation in Media in Google Chrome prior to 148.0.7778.... 148.0.7778.96 之前的 Google Chrome 媒體中的不當實作允許... | 2026-05-06 |
| CVE-2026-7978 | 高 | 8.1 | Chrome | Inappropriate implementation in Companion in Google Chrome on Mac prior to... 148.0.7778.96 之前的 Mac 版 Google Chrome 中的 Companio... | 2026-05-06 |
| CVE-2026-7977 | 中 | 6.3 | Chrome | Inappropriate implementation in Canvas in Google Chrome prior to 148.0.7778... 148.0.7778.96 之前的 Google Chrome 中的 Canvas 實施不當... | 2026-05-06 |
| CVE-2026-7976 | 高 | 7.5 | Chrome | Use after free in Views in Google Chrome prior to 148.0.7778.96 allowed an... 148.0.7778.96 之前的 Google Chrome 視圖中的「釋放後使用... | 2026-05-06 |
| CVE-2026-7975 | 高 | 8.3 | Chrome | Use after free in DevTools in Google Chrome prior to 148.0.7778.96 allowed... 148.0.7778.96 之前的 Google Chrome 中的 DevTools 中的釋... | 2026-05-06 |
| CVE-2026-7974 | 高 | 8.8 | Chrome | Use after free in Blink in Google Chrome prior to 148.0.7778.96 allowed a r... 在 148.0.7778.96 之前的 Google Chrome 中使用 after free... | 2026-05-06 |
| CVE-2026-7973 | 高 | 8.8 | Chrome | Integer overflow in Dawn in Google Chrome on Windows prior to 148.0.7778.96... 148.0.7778.96 之前的 Windows 上的 Google Chrome 中的 Da... | 2026-05-06 |
| CVE-2026-7972 | 中 | 4.3 | Chrome | Uninitialized Use in GPU in Google Chrome prior to 148.0.7778.96 allowed a... 148.0.7778.96 之前的 Google Chrome 中 GPU 中的未初始化... | 2026-05-06 |
| CVE-2026-7971 | 中 | 6.3 | Chrome | Inappropriate implementation in ORB in Google Chrome prior to 148.0.7778.96... 148.0.7778.96 之前的 Google Chrome 中 ORB 中的不當實作... | 2026-05-06 |
| CVE-2026-7970 | 高 | 8.3 | Chrome | Use after free in TopChrome in Google Chrome prior to 148.0.7778.96 allowed... 148.0.7778.96 之前的 Google Chrome 中的 TopChrome 中的... | 2026-05-06 |
| CVE-2026-7969 | 中 | 4.3 | Chrome | Integer overflow in Network in Google Chrome prior to 148.0.7778.96 allowed... 148.0.7778.96 之前的 Google Chrome 網路中的整數溢位允許... | 2026-05-06 |
| CVE-2026-7968 | 低 | 3.1 | Chrome | Insufficient validation of untrusted input in CORS in Google Chrome prior t... 148.0.7778.96 之前的 Google Chrome 中對 CORS 中不受信任... | 2026-05-06 |
| CVE-2026-7967 | 高 | 8.3 | Chrome | Insufficient validation of untrusted input in Navigation in Google Chrome p... 在 148.0.7778.96 之前的版本中,Google Chrome 導覽中的不... | 2026-05-06 |
| CVE-2026-7966 | 低 | 3.1 | Chrome | Insufficient validation of untrusted input in SiteIsolation in Google Chrom... 148.0.7778.96 之前的 Google Chrome 中的 SiteIsolation... | 2026-05-06 |
| CVE-2026-7965 | 低 | 3.1 | Chrome | Insufficient validation of untrusted input in DevTools in Google Chrome pri... 148.0.7778.96 之前的 Google Chrome 中的 DevTools 中對不... | 2026-05-06 |
| CVE-2026-7964 | 中 | 4.2 | Chrome | Insufficient validation of untrusted input in FileSystem in Google Chrome p... 148.0.7778.96 之前的 Google Chrome 中,對檔案系統中不受... | 2026-05-06 |
| CVE-2026-7963 | 高 | 8.3 | Chrome | Inappropriate implementation in ServiceWorker in Google Chrome prior to 148... 148.0.7778.96 之前的 Google Chrome 中的 ServiceWorker... | 2026-05-06 |
| CVE-2026-7962 | 中 | 5.4 | Chrome | Insufficient policy enforcement in DirectSockets in Google Chrome prior to... 148.0.7778.96 之前的 Google Chrome 中的 DirectSockets... | 2026-05-06 |
| CVE-2026-7961 | 中 | 4.3 | Chrome | Insufficient validation of untrusted input in Permissions in Google Chrome... 148.0.7778.96 之前的 Google Chrome 中的權限中不受信任的... | 2026-05-06 |
| CVE-2026-7960 | 中 | 5.3 | Chrome | Race in Speech in Google Chrome prior to 148.0.7778.96 allowed a remote att... 148.0.7778.96 之前的 Google Chrome 中的語音競爭允許破壞... | 2026-05-06 |
| CVE-2026-7959 | 低 | 3.1 | Chrome | Inappropriate implementation in Navigation in Google Chrome prior to 148.0.... 148.0.7778.96 先前版本的 Google Chrome 導覽中的不當實作... | 2026-05-06 |
| CVE-2026-7958 | 中 | 5.4 | Chrome | Inappropriate implementation in ServiceWorker in Google Chrome prior to 148... 148.0.7778.96 之前的 Google Chrome 中的 ServiceWorker... | 2026-05-06 |
| CVE-2026-7957 | 高 | 8.8 | Chrome | Out of bounds write in Media in Google Chrome on Mac, iOS prior to 148.0.77... Mac 上的 Google Chrome 中的媒體越界寫入,iOS 148.0.7778... | 2026-05-06 |
| CVE-2026-7956 | 高 | 8.3 | Chrome | Use after free in Navigation in Google Chrome prior to 148.0.7778.96 allowe... 148.0.7778.96 先前版本的 Google Chrome 導覽中的釋放後使... | 2026-05-06 |
| CVE-2026-7955 | 中 | 5.3 | Chrome | Uninitialized Use in GPU in Google Chrome prior to 148.0.7778.96 allowed a... 148.0.7778.96 之前的 Google Chrome 中的 GPU 中的未初始... | 2026-05-06 |
| CVE-2026-7954 | 低 | 3.1 | Chrome | Race in Shared Storage in Google Chrome prior to 148.0.7778.96 allowed a re... 148.0.7778.96 之前的 Google Chrome 中的共享儲存競爭允許... | 2026-05-06 |
| CVE-2026-7953 | 中 | 6.1 | Chrome | Insufficient validation of untrusted input in Omnibox in Google Chrome prio... 148.0.7778.96 先前的版本中,Google Chrome 中的多功能方... | 2026-05-06 |
| CVE-2026-7952 | 中 | 4.2 | Chrome | Insufficient policy enforcement in Extensions in Google Chrome prior to 148... 148.0.7778.96 之前的 Google Chrome 擴充功能中的策略執行... | 2026-05-06 |
| CVE-2026-7951 | 高 | 8.8 | Chrome | Out of bounds write in WebRTC in Google Chrome prior to 148.0.7778.96 allow... 148.0.7778.96 之前的 Google Chrome 中的 WebRTC 越界寫入... | 2026-05-06 |
| CVE-2026-7950 | 中 | 5.4 | Chrome | Out of bounds read and write in GFX in Google Chrome prior to 148.0.7778.96... 148.0.7778.96 之前的 Google Chrome 中的 GFX 中的越界讀... | 2026-05-06 |
| CVE-2026-7949 | 低 | 3.1 | Chrome | Out of bounds read in Skia in Google Chrome prior to 148.0.7778.96 allowed... 148.0.7778.96 之前的 Google Chrome 中的 Skia 中的越界讀... | 2026-05-06 |
| CVE-2026-7948 | 高 | 7.5 | Chrome | Race in Chromoting in Google Chrome on Windows prior to 148.0.7778.96 allow... 148.0.7778.96 之前的 Windows 上的 Google Chrome 中的 Ch... | 2026-05-06 |
| CVE-2026-7947 | 中 | 4.2 | Chrome | Insufficient validation of untrusted input in Network in Google Chrome prio... 148.0.7778.96 之前的 Google Chrome 中網路中不受信任的輸... | 2026-05-06 |
| CVE-2026-7946 | 中 | 4.3 | Linux OS Chrome | Insufficient policy enforcement in WebUI in Google Chrome on Linux, Mac, Wi... 148.0.7778.96 之前的 Linux、Mac、Windows、ChromeOS 上的... | 2026-05-06 |
| CVE-2026-7945 | 低 | 3.1 | Chrome | Insufficient validation of untrusted input in COOP in Google Chrome prior t... 148.0.7778.96 之前的 Google Chrome 中,由於對 COOP 中不... | 2026-05-06 |
| CVE-2026-7944 | 低 | 3.1 | Chrome | Insufficient validation of untrusted input in Persistent Cache in Google Ch... 在 148.0.7778.96 之前的 Google Chrome 中,對持久緩存中... | 2026-05-06 |
| CVE-2026-7943 | 中 | 4.2 | Chrome | Insufficient validation of untrusted input in ANGLE in Google Chrome prior... 在 148.0.7778.96 之前的 Google Chrome 中,對 ANGLE 中不... | 2026-05-06 |
| CVE-2026-7942 | 中 | 4.3 | Chrome | Integer overflow in ANGLE in Google Chrome prior to 148.0.7778.96 allowed a... 148.0.7778.96 之前的 Google Chrome 中 ANGLE 中的整數溢... | 2026-05-06 |
| CVE-2026-7941 | 中 | 4.4 | Chrome | Insufficient validation of untrusted input in Mobile in Google Chrome on An... 148.0.7778.96 之前的 Android 版 Google Chrome 中的行動... | 2026-05-06 |
| CVE-2026-7940 | 高 | 8.8 | Chrome | Use after free in V8 in Google Chrome prior to 148.0.7778.96 allowed an att... 在 148.0.7778.96 之前的 Google Chrome V8 中使用 after f... | 2026-05-06 |
| CVE-2026-7939 | 中 | 5.4 | Chrome | Inappropriate implementation in SanitizerAPI in Google Chrome prior to 148.... 148.0.7778.96 之前的 Google Chrome 中的 SanitizerAPI 實... | 2026-05-06 |
| CVE-2026-7938 | 高 | 8.8 | Chrome | Use after free in CSS in Google Chrome prior to 148.0.7778.96 allowed a rem... 在 148.0.7778.96 之前的 Google Chrome 中使用 after free... | 2026-05-06 |
| CVE-2026-7937 | 低 | 3.1 | Chrome | Insufficient policy enforcement in DevTools in Google Chrome prior to 148.0... 148.0.7778.96 之前的 Google Chrome 中的 DevTools 中的策... | 2026-05-06 |
| CVE-2026-7936 | 中 | 4.3 | Chrome | Object lifecycle issue in V8 in Google Chrome prior to 148.0.7778.96 allowe... 148.0.7778.96 之前的 Google Chrome V8 中的物件生命週期... | 2026-05-06 |
| CVE-2026-7935 | 中 | 5.4 | Chrome | Inappropriate implementation in Speech in Google Chrome prior to 148.0.7778... 148.0.7778.96 之前的 Google Chrome 語音中的不當實現允許... | 2026-05-06 |
| CVE-2026-7934 | 中 | 4.2 | Chrome | Insufficient validation of untrusted input in Popup Blocker in Google Chrom... 148.0.7778.96 之前的 Google Chrome 中的彈出視窗阻止程式... | 2026-05-06 |
| CVE-2026-7933 | 中 | 4.3 | Chrome | Out of bounds read in WebCodecs in Google Chrome prior to 148.0.7778.96 all... 148.0.7778.96 之前的 Google Chrome 中的 WebCodecs 中的... | 2026-05-06 |
| CVE-2026-7932 | 中 | 4.4 | Chrome | Insufficient policy enforcement in Downloads in Google Chrome prior to 148.... 148.0.7778.96 之前的 Google Chrome 中的下載策略執行不充... | 2026-05-06 |
| CVE-2026-7931 | 中 | 5.4 | Chrome | Insufficient validation of untrusted input in iOS in Google Chrome on iOS p... 148.0.7778.96 之前的 iOS 版 Google Chrome 中對 iOS 中不... | 2026-05-06 |
| CVE-2026-7930 | 高 | 8.8 | Chrome | Insufficient validation of untrusted input in Cookies in Google Chrome prio... 148.0.7778.96 之前的 Google Chrome 中 Cookie 中的不受信... | 2026-05-06 |
| CVE-2026-7929 | 高 | 7.5 | Chrome | Use after free in MediaRecording in Google Chrome prior to 148.0.7778.96 al... 148.0.7778.96 之前的 Google Chrome 中的 MediaRecording... | 2026-05-06 |
| CVE-2026-7928 | 高 | 8.8 | Chrome | Use after free in WebRTC in Google Chrome on Windows prior to 148.0.7778.96... 在 148.0.7778.96 之前的 Windows 上,在 Google Chrome 中... | 2026-05-06 |
| CVE-2026-7927 | 高 | 8.8 | Chrome | Type Confusion in Runtime in Google Chrome prior to 148.0.7778.96 allowed a... 148.0.7778.96 之前的 Google Chrome 運行時中的類型混亂允... | 2026-05-06 |
| CVE-2026-7926 | 高 | 8.8 | Chrome | Use after free in PresentationAPI in Google Chrome prior to 148.0.7778.96 a... 148.0.7778.96 之前的 Google Chrome 中的PresentationAPI... | 2026-05-06 |
| CVE-2026-7925 | 高 | 7.8 | Chrome | Use after free in Chromoting in Google Chrome on Windows prior to 148.0.777... 148.0.7778.96 之前的 Windows 上的 Google Chrome 中的 Ch... | 2026-05-06 |
| CVE-2026-7924 | 中 | 6.5 | Chrome | Uninitialized Use in Dawn in Google Chrome prior to 148.0.7778.96 allowed a... 148.0.7778.96 之前的 Google Chrome 中的 Dawn 中的未初始... | 2026-05-06 |
| CVE-2026-7923 | 高 | 8.3 | Chrome | Out of bounds write in Skia in Google Chrome prior to 148.0.7778.96 allowed... 148.0.7778.96 之前的 Google Chrome 中的 Skia 中的越界寫... | 2026-05-06 |
| CVE-2026-7922 | 高 | 8.3 | Chrome | Use after free in ServiceWorker in Google Chrome prior to 148.0.7778.96 all... 在 148.0.7778.96 之前的 Google Chrome 中的 ServiceWorke... | 2026-05-06 |
| CVE-2026-7921 | 高 | 8.8 | Chrome | Use after free in Passwords in Google Chrome prior to 148.0.7778.96 allowed... 148.0.7778.96 先前版本的 Google Chrome 密碼中的「釋放後... | 2026-05-06 |
| CVE-2026-7920 | 高 | 8.3 | Chrome | Use after free in Skia in Google Chrome prior to 148.0.7778.96 allowed a re... 148.0.7778.96 之前的 Google Chrome 中的 Skia 中的「釋放... | 2026-05-06 |
| CVE-2026-7919 | 高 | 8.3 | Chrome | Use after free in Aura in Google Chrome prior to 148.0.7778.96 allowed a re... 148.0.7778.96 之前的 Google Chrome 中的 Aura 中的釋放後... | 2026-05-06 |
| CVE-2026-7918 | 高 | 8.3 | Chrome | Use after free in GPU in Google Chrome prior to 148.0.7778.96 allowed a rem... 148.0.7778.96 之前的 Google Chrome 中的 GPU 中的釋放後... | 2026-05-06 |
| CVE-2026-7917 | 高 | 8.3 | Chrome | Use after free in Fullscreen in Google Chrome on Windows prior to 148.0.777... 在 148.0.7778.96 之前的 Windows 上,在 Google Chrome 的... | 2026-05-06 |
| CVE-2026-7916 | 高 | 8.3 | Chrome | Insufficient data validation in InterestGroups in Google Chrome prior to 14... 148.0.7778.96 之前的 Google Chrome 中的 InterestGroups... | 2026-05-06 |
| CVE-2026-7915 | 中 | 4.3 | Chrome | Insufficient data validation in DevTools in Google Chrome on Android prior... 148.0.7778.96 之前的 Android 版 Google Chrome 中的 DevT... | 2026-05-06 |
| CVE-2026-7914 | 高 | 8.3 | Chrome | Type Confusion in Accessibility in Google Chrome on Windows prior to 148.0.... 148.0.7778.96 之前的 Windows 上的 Google Chrome 中的輔... | 2026-05-06 |
| CVE-2026-7913 | 高 | 7.8 | Chrome | Insufficient policy enforcement in DevTools in Google Chrome on Android pri... 148.0.7778.96 之前的 Android 版 Google Chrome 中的 DevT... | 2026-05-06 |
| CVE-2026-7912 | 中 | 4.2 | Chrome | Integer overflow in GPU in Google Chrome on Android prior to 148.0.7778.96... 148.0.7778.96 之前的 Android 版 Google Chrome 中的 GPU... | 2026-05-06 |
| CVE-2026-7911 | 高 | 8.3 | Chrome | Use after free in Aura in Google Chrome on Windows prior to 148.0.7778.96 a... 148.0.7778.96 之前的 Windows 上的 Google Chrome 中的 Au... | 2026-05-06 |
| CVE-2026-7910 | 嚴重 | 9.6 | Chrome | Use after free in Views in Google Chrome prior to 148.0.7778.96 allowed a r... 148.0.7778.96 之前的 Google Chrome 視圖中的釋放後使用允... | 2026-05-06 |
| CVE-2026-7909 | 低 | 3.1 | Chrome | Inappropriate implementation in ServiceWorker in Google Chrome prior to 148... 148.0.7778.96 之前的 Google Chrome 中的 ServiceWorker... | 2026-05-06 |
| CVE-2026-7908 | 嚴重 | 9.6 | Chrome | Use after free in Fullscreen in Google Chrome prior to 148.0.7778.96 allowe... 148.0.7778.96 先前版本的 Google Chrome 中的全螢幕釋放後... | 2026-05-06 |
| CVE-2026-7907 | 高 | 8.8 | Chrome | Use after free in DOM in Google Chrome prior to 148.0.7778.96 allowed a rem... 在 148.0.7778.96 之前的 Google Chrome 中,在 DOM 中使用... | 2026-05-06 |
| CVE-2026-7906 | 高 | 8.8 | Chrome | Use after free in SVG in Google Chrome prior to 148.0.7778.96 allowed a rem... 148.0.7778.96 先前版本的 Google Chrome 中的 SVG 使用 af... | 2026-05-06 |
| CVE-2026-7905 | 高 | 8.3 | Chrome | Insufficient validation of untrusted input in Media in Google Chrome on And... 148.0.7778.96 之前的 Android 版 Google Chrome 中的媒體... | 2026-05-06 |
| CVE-2026-7904 | 中 | 4.3 | Chrome | Out of bounds read in Fonts in Google Chrome prior to 148.0.7778.96 allowed... 148.0.7778.96 之前的 Google Chrome 字體中的越界讀取允許... | 2026-05-06 |
| CVE-2026-7903 | 高 | 8.8 | Chrome | Integer overflow in ANGLE in Google Chrome on Mac,Windows prior to 148.0.77... Mac 和 Windows 148.0.7778.96 先前版本的 Google Chrome... | 2026-05-06 |
| CVE-2026-7902 | 高 | 8.8 | Chrome | Out of bounds memory access in V8 in Google Chrome prior to 148.0.7778.96 a... 148.0.7778.96 之前的 Google Chrome V8 中的越界記憶體存... | 2026-05-06 |
| CVE-2026-7901 | 高 | 8.8 | Chrome | Use after free in ANGLE in Google Chrome on Mac prior to 148.0.7778.96 allo... 在 148.0.7778.96 之前的 Mac 版 Google Chrome 中使用 aft... | 2026-05-06 |
| CVE-2026-7900 | 高 | 8.3 | Chrome | Heap buffer overflow in ANGLE in Google Chrome prior to 148.0.7778.96 allow... 148.0.7778.96 之前的 Google Chrome ANGLE 中的堆緩衝區溢... | 2026-05-06 |
| CVE-2026-7899 | 高 | 8.8 | Chrome | Out of bounds read and write in V8 in Google Chrome prior to 148.0.7778.96... 148.0.7778.96 之前的 Google Chrome V8 中的越界讀寫允許... | 2026-05-06 |
| CVE-2026-7898 | 高 | 8.8 | Linux OS Chrome | Use after free in Chromoting in Google Chrome on Linux prior to 148.0.7778.... 148.0.7778.96 之前的 Linux 上的 Google Chrome 中的 Chro... | 2026-05-06 |
| CVE-2026-41938 | 高 | 8.8 | PHP | Vvveb before version 1.0.8.2 contains an unrestricted file upload vulnerabi... 1.0.8.2 先前版本的 Vvveb 在媒體上傳處理程序中包含一個不... | 2026-05-06 |
| CVE-2026-41936 | 高 | 8.1 | PHP | Vvveb before version 1.0.8.2 contains an XML external entity (XXE) injectio... 1.0.8.2 先前版本的 Vvveb 在管理工具/匯入功能中包含 XML... | 2026-05-06 |
| CVE-2026-41934 | 高 | 8.8 | PHP | Vvveb before version 1.0.8.2 contains an authenticated remote code executio... 1.0.8.2 先前版本的 Vvveb 在管理程式碼編輯器中包含一個經... | 2026-05-06 |
| CVE-2026-41930 | 嚴重 | 9.8 | Apache PHP | Vvveb before version 1.0.8.2 contains a hard-coded credentials vulnerabilit... 1.0.8.2 版本之前的 Vvveb 在其 docker-compose-apache.yam... | 2026-05-06 |
| CVE-2026-7897 | 高 | 7.5 | Chrome | Use after free in Mobile in Google Chrome on iOS prior to 148.0.7778.96 all... 148.0.7778.96 之前的 iOS 版 Google Chrome 中的行動版免... | 2026-05-06 |
| CVE-2026-7896 | 高 | 8.8 | Chrome | Integer overflow in Blink in Google Chrome prior to 148.0.7778.96 allowed a... 148.0.7778.96 之前的 Google Chrome 中的 Blink 中的整數... | 2026-05-06 |
| CVE-2026-29080 | 高 | 8.8 | MySQL Oracle | A SQL injection vulnerability in `FilterEngine.create_sqla_query()` allows... FilterEngine.create_sqla_query() 中的 SQL 注入漏洞允許... | 2026-05-06 |
| CVE-2026-5081 | 嚴重 | 9.1 | Apache | Apache::Session::Generate::ModUniqueId versions from 1.54 through 1.94 for... Perl 會話 ID 的 Apache::Session::Generate::ModUniqueId... | 2026-05-06 |
| CVE-2026-43258 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: alpha:... 在Linux核心中,以下漏洞已解決: alpha:修復記憶體壓縮... | 2026-05-06 |
| CVE-2026-40010 | 嚴重 | 9.1 | Apache | Missing invocation of Servlet http web request method changeSessionId after... 會話綁定後缺少對 Servlet http Web 請求方法 ChangeSessio... | 2026-05-06 |
| CVE-2026-23927 | N/A | - | Oracle | A user able to connect to Agent 2 can inject an Oracle TNS connection strin... 能夠連接到代理 2 的使用者可以透過「service」參數注入 Or... | 2026-05-06 |
| CVE-2026-40075 | 高 | 7.5 | Apache | OpenMRS Core is an open source electronic medical record system platform. I... OpenMRS Core 是一個開源電子病歷系統平台。在版本 2.7.8... | 2026-05-05 |
| CVE-2026-28780 | 嚴重 | 9.8 | Apache | Heap-based Buffer Overflow vulnerability in mod_proxy_ajp of Apache HTTP Se... Apache HTTP Server 的 mod_proxy_ajp 中基於堆疊的緩衝區... | 2026-05-05 |
| CVE-2026-35453 | 中 | 5.4 | PHP | PhpSpreadsheet is a library for reading and writing spreadsheet files. In v... PhpSpreadsheet 是一個用於讀取和寫入電子表格檔案的函式庫... | 2026-05-05 |
| CVE-2026-34084 | 嚴重 | 9.8 | PHP | PhpSpreadsheet is a library for reading and writing spreadsheet files. In v... PhpSpreadsheet 是一個用於讀取和寫入電子表格檔案的函式庫... | 2026-05-05 |
| CVE-2026-30923 | 高 | 7.5 | Linux OS Apache | ModSecurity is an open source, cross platform web application firewall (WAF... ModSecurity 是一個適用於 Apache、IIS 和 Nginx 的開源跨... | 2026-05-05 |
| CVE-2026-29168 | 高 | 7.3 | Apache | Allocation of Resources Without Limits or Throttling vulnerability in Apach... 透過 OCSP 回應資料無限制地分配資源或限制 Apache HTTP Se... | 2026-05-05 |
| CVE-2026-6261 | 高 | 8.8 | PHP | The Betheme theme for WordPress is vulnerable to Arbitrary File Upload in v... WordPress 的 Betheme 主題在 28.4 及以下版本中容易受到任... | 2026-05-05 |
| CVE-2026-43870 | 高 | 7.3 | Apache | Origin Validation Error, Improper Limitation of a Pathname to a Restricted... 來源驗證錯誤、路徑名稱到受限目錄的不正確限制(「路徑遍... | 2026-05-05 |
| CVE-2026-5957 | 中 | 6.5 | PHP | The EmailKit plugin for WordPress is vulnerable to Arbitrary File Read in a... WordPress 的 EmailKit 外掛程式在 1.6.5 及之前的所有版本... | 2026-05-05 |
| CVE-2026-42238 | 嚴重 | 9.8 | Linux OS | Nginx UI is a web user interface for the Nginx web server. Prior to version... Nginx UI 是 Nginx Web 伺服器的 Web 使用者介面。在版本 2... | 2026-05-04 |
| CVE-2026-42223 | 中 | 6.5 | Linux OS | Nginx UI is a web user interface for the Nginx web server. Prior to version... Nginx UI 是 Nginx Web 伺服器的 Web 使用者介面。在版本 2... | 2026-05-04 |
| CVE-2026-42222 | 高 | 8.1 | Linux OS | Nginx UI is a web user interface for the Nginx web server. In version 2.3.5... Nginx UI 是 Nginx Web 伺服器的 Web 使用者介面。在版本 2... | 2026-05-04 |
| CVE-2026-42221 | 高 | 8.1 | Linux OS | Nginx UI is a web user interface for the Nginx web server. From version 2.0... Nginx UI 是 Nginx Web 伺服器的 Web 使用者介面。從版本 2... | 2026-05-04 |
| CVE-2026-42220 | 中 | 6.5 | Linux OS | Nginx UI is a web user interface for the Nginx web server. Prior to version... Nginx UI 是 Nginx Web 伺服器的 Web 使用者介面。在版本 2... | 2026-05-04 |
| CVE-2026-42237 | 高 | 8.8 | MySQL | n8n is an open source workflow automation platform. Prior to versions 1.123... n8n 是一個開源工作流程自動化平台。在版本 1.123.32、2.17... | 2026-05-04 |
| CVE-2026-42233 | 嚴重 | 9.8 | Oracle | n8n is an open source workflow automation platform. Prior to versions 1.123... n8n 是一個開源工作流程自動化平台。在版本 1.123.32、2.17... | 2026-05-04 |
| CVE-2026-25863 | 高 | 7.5 | PHP | Conditional Fields for Contact Form 7 WordPress plugin through version 2.6.... 聯絡表單 7 WordPress 外掛程式的條件欄位透過版本 2.6.7... | 2026-05-04 |
| CVE-2026-40682 | 嚴重 | 9.1 | Apache | XML External Entity (XXE) via Unsanitized Dictionary Parsing in Apache Open... XML 外部實體 (XXE) 透過 Apache OpenNLP DictionaryEntryP... | 2026-05-04 |
| CVE-2026-33523 | 中 | 6.5 | Apache | HTTP response splitting vulnerability in multiple Apache HTTP Server module... 多個 Apache HTTP Server 模組中的 HTTP 回應分割漏洞,後... | 2026-05-04 |
| CVE-2026-33007 | 中 | 5.3 | Apache | A NULL pointer dereference in the mod_authn_socache in Apache HTTP Server 2... Apache HTTP Server 2.4.66 及更早版本中的 mod_authn_soca... | 2026-05-04 |
| CVE-2026-33006 | 中 | 4.8 | Apache | A timing attack against mod_auth_digest in Apache HTTP Server 2.4.66 allows... Apache HTTP Server 2.4.66 中針對 mod_auth_digest 的定時... | 2026-05-04 |
| CVE-2026-29169 | 高 | 7.5 | Apache | A NULL pointer dereference in mod_dav_lock in Apache HTTP Server 2.4.66 and... Apache HTTP Server 2.4.66 及更早版本中的 mod_dav_lock... | 2026-05-04 |
| CVE-2026-23918 | 高 | 8.8 | Apache | Double Free and possible RCE vulnerability in Apache HTTP Server with the H... 使用 HTTP/2 協定的 Apache HTTP Server 中存在雙重釋放和... | 2026-05-04 |
| CVE-2026-34032 | 中 | 5.3 | Apache | Improper Null Termination, Out-of-bounds Read vulnerability in Apache HTTP... Apache HTTP Server 中的不當空終止、越界讀取漏洞。 此問... | 2026-05-04 |
| CVE-2026-33857 | 中 | 5.3 | Apache | Out-of-bounds Read vulnerability in mod_proxy_ajp of Apache HTTP Server.... mod_proxy_ajp 中的越界讀取漏洞 阿帕奇 HTTP 伺服器。... | 2026-05-04 |
| CVE-2026-34059 | 高 | 7.5 | Apache | Buffer Over-read vulnerability in Apache HTTP Server. This issue affects A... Apache HTTP Server 中的緩衝區過度讀取漏洞。 此問題影響... | 2026-05-04 |
| CVE-2026-24072 | 高 | 8.8 | Apache | An escalation of privilege bug in various modules in Apache HTTP 2.4.66 and... Apache HTTP 2.4.66 及更早版本中各模組中的權限升級錯誤允... | 2026-05-04 |
| CVE-2026-29199 | 高 | 8.1 | PHP | phpBB before 3.3.16 is vulnerable to Host Header Injection that can lead to... 3.3.16 之前的 phpBB 容易受到主機標頭注入的攻擊,導緻密... | 2026-05-04 |
| CVE-2026-7716 | 中 | 6.3 | PHP | A vulnerability was found in code-projects Gym Management System In PHP and... PHP 和 Windows NT 1.0 中的程式碼專案 Gym Management Sys... | 2026-05-04 |
| CVE-2026-43058 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: media:... 在Linux核心中,以下漏洞已解決: 媒體:vidtv:修正導致... | 2026-05-02 |
| CVE-2026-7647 | 高 | 8.1 | PHP | The Profile Builder Pro plugin for WordPress is vulnerable to PHP Object In... WordPress 的 Profile Builder Pro 外掛程式在 3.14.5 及之... | 2026-05-02 |
| CVE-2026-7458 | 嚴重 | 9.8 | PHP | The User Verification by PickPlugins plugin for WordPress is vulnerable to... WordPress 的 PickPlugins 外掛程式使用者驗證在 2.0.46 及... | 2026-05-02 |
| CVE-2026-37554 | 高 | 7.5 | Linux OS | An issue was discovered in Vanetza V2X v26.02 allowing remote unauthorized... Vanetza V2X v26.02 中發現了一個問題,讓遠端未經授權的攻... | 2026-05-01 |
| CVE-2026-37552 | 高 | 8.4 | PHP | Unsafe deserialization vulnerability in MixPHP Framework 2.x thru 2.2.17. T... MixPHP Framework 2.x 至 2.2.17 中存在不安全反序列化漏洞... | 2026-05-01 |
| CVE-2026-43057 | 高 | 7.5 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: c... 在Linux核心中,以下漏洞已解決: net:正確處理 IPV6_CSU... | 2026-05-01 |
| CVE-2026-43056 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: m... 在Linux核心中,以下漏洞已解決: net: mana: 修正 add_ad... | 2026-05-01 |
| CVE-2026-43055 | 高 | 7.5 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: scsi:... 在Linux核心中,以下漏洞已解決: scsi: 目標: 檔案: 對 a... | 2026-05-01 |
| CVE-2026-43053 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: xfs: c... 在Linux核心中,以下漏洞已解決: xfs:關閉 attr dabtree... | 2026-05-01 |
| CVE-2026-43047 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: HID: m... 在Linux核心中,以下漏洞已解決: HID:多點觸控:檢查以... | 2026-05-01 |
| CVE-2026-43048 | 高 | 8.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: HID: c... 在Linux核心中,以下漏洞已解決: HID:核心:透過刪除偽... | 2026-05-01 |
| CVE-2026-43049 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: HID: l... 在Linux核心中,以下漏洞已解決: HID:logitech-hidpp:... | 2026-05-01 |
| CVE-2026-43050 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: atm: l... 在Linux核心中,以下漏洞已解決: atm:lec:修正 sock_de... | 2026-05-01 |
| CVE-2026-43051 | 高 | 8.1 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: HID: w... 在Linux核心中,以下漏洞已解決: HID:wacom:修正 wacom... | 2026-05-01 |
| CVE-2026-43052 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: wifi:... 在Linux核心中,以下漏洞已解決: wifi:mac80211:檢查 i... | 2026-05-01 |
| CVE-2026-43054 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: scsi:... 在Linux核心中,以下漏洞已解決: scsi:目標:tcm_loop:... | 2026-05-01 |
| CVE-2026-43040 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: i... 在Linux核心中,以下漏洞已解決: net: ipv6: ndisc:修正... | 2026-05-01 |
| CVE-2026-43046 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: btrfs:... 在Linux核心中,以下漏洞已解決: btrfs:拒絕 drop_progr... | 2026-05-01 |
| CVE-2026-43045 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: mshv:... 在Linux核心中,以下漏洞已解決: mshv:修正 mshv_region... | 2026-05-01 |
| CVE-2026-43044 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: crypto... 在Linux核心中,以下漏洞已解決: crypto: caam - 修復長... | 2026-05-01 |
| CVE-2026-43043 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: crypto... 在Linux核心中,以下漏洞已解決: crypto: af-alg - 修正... | 2026-05-01 |
| CVE-2026-43042 | 高 | 7.1 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: mpls:... 在Linux核心中,以下漏洞已解決: mpls:新增 seqcount 以... | 2026-05-01 |
| CVE-2026-43041 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: q... 在Linux核心中,以下漏洞已解決: net: qrtr:用 xarray... | 2026-05-01 |
| CVE-2026-43039 | 嚴重 | 9.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: t... 在Linux核心中,以下漏洞已解決: net: ti: icssg-prueth... | 2026-05-01 |
| CVE-2026-43038 | 嚴重 | 9.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ipv6:... 在Linux核心中,以下漏洞已解決: ipv6: icmp: 清除 ip6_e... | 2026-05-01 |
| CVE-2026-43037 | 嚴重 | 9.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ip6_tu... 在Linux核心中,以下漏洞已解決: ip6_tunnel:清除 ip4ip... | 2026-05-01 |
| CVE-2026-43036 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: u... 在Linux核心中,以下漏洞已解決: net:使用 skb_header_p... | 2026-05-01 |
| CVE-2026-43035 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: s... 在Linux核心中,以下漏洞已解決: net: sched: cls_api:... | 2026-05-01 |
| CVE-2026-43034 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: bnxt_e... 在Linux核心中,以下漏洞已解決: bnxt_en:從查詢類型設... | 2026-05-01 |
| CVE-2026-43028 | 高 | 7.1 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: netfil... 在Linux核心中,以下漏洞已解決: netfilter: x_tables:... | 2026-05-01 |
| CVE-2026-43026 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: netfil... 在Linux核心中,以下漏洞已解決: netfilter:ctnetlink:... | 2026-05-01 |
| CVE-2026-43027 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: netfil... 在Linux核心中,以下漏洞已解決: netfilter:nf_conntrac... | 2026-05-01 |
| CVE-2026-43029 | 高 | 7.5 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: mptcp:... 在Linux核心中,以下漏洞已解決: mptcp:修復 mptcp_recv... | 2026-05-01 |
| CVE-2026-43030 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: bpf: F... 在Linux核心中,以下漏洞已解決: bpf:修正 regsafe() 以... | 2026-05-01 |
| CVE-2026-43031 | 高 | 7.5 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: x... 在Linux核心中,以下漏洞已解決: net: xilinx: axienet:... | 2026-05-01 |
| CVE-2026-43032 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: NFC: p... 在Linux核心中,以下漏洞已解決: NFC:pn533:綁定UART接... | 2026-05-01 |
| CVE-2026-43033 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: crypto... 在Linux核心中,以下漏洞已解決: crypto: authencesn -... | 2026-05-01 |
| CVE-2026-43025 | 高 | 7.3 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: netfil... 在Linux核心中,以下漏洞已解決: netfilter:ctnetlink:... | 2026-05-01 |
| CVE-2026-43024 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: netfil... 在Linux核心中,以下漏洞已解決: netfilter: nf_tables:... | 2026-05-01 |
| CVE-2026-43023 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: Blueto... 在Linux核心中,以下漏洞已解決: 藍牙:SCO:修復 sco_so... | 2026-05-01 |
| CVE-2026-43022 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: Blueto... 在Linux核心中,以下漏洞已解決: 藍牙:hci_sync:hci_cm... | 2026-05-01 |
| CVE-2026-43021 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: Blueto... 在Linux核心中,以下漏洞已解決: 藍牙:hci_sync:修正 h... | 2026-05-01 |
| CVE-2026-43020 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: Blueto... 在Linux核心中,以下漏洞已解決: 藍牙:MGMT:載入時驗證... | 2026-05-01 |
| CVE-2026-43019 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: Blueto... 在Linux核心中,以下漏洞已解決: 藍牙:hci_conn:修復 s... | 2026-05-01 |
| CVE-2026-43016 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: bpf: s... 在Linux核心中,以下漏洞已解決: bpf:sockmap:修正 sk_... | 2026-05-01 |
| CVE-2026-43018 | 高 | 8.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: Blueto... 在Linux核心中,以下漏洞已解決: 藍牙:hci_event:修復... | 2026-05-01 |
| CVE-2026-43017 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: Blueto... 在Linux核心中,以下漏洞已解決: 藍牙:MGMT:驗證網狀網... | 2026-05-01 |
| CVE-2026-43014 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: m... 在Linux核心中,以下漏洞已解決: net: macb: 正確取消註... | 2026-05-01 |
| CVE-2026-43013 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net/ml... 在Linux核心中,以下漏洞已解決: net/mlx5: lag: 在建立... | 2026-05-01 |
| CVE-2026-43012 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net/ml... 在Linux核心中,以下漏洞已解決: net/mlx5:修復失敗時 s... | 2026-05-01 |
| CVE-2026-43015 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: m... 在Linux核心中,以下漏洞已解決: net:macb:修正 PCIglu... | 2026-05-01 |
| CVE-2026-43011 | 嚴重 | 9.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net/x2... 在Linux核心中,以下漏洞已解決: net/x25:修復 skb 潛在... | 2026-05-01 |
| CVE-2026-43009 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: bpf: F... 在Linux核心中,以下漏洞已解決: bpf:修復由於原子獲取... | 2026-05-01 |
| CVE-2026-43008 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: gpio:... 在Linux核心中,以下漏洞已解決: gpio:qixis-fpga:修正... | 2026-05-01 |
| CVE-2026-43007 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: accel/... 在Linux核心中,以下漏洞已解決: Accel/qaic:如果所有者... | 2026-05-01 |
| CVE-2026-43006 | 高 | 7.1 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: io_uri... 在Linux核心中,以下漏洞已解決: io_uring/rsrc:拒絕零... | 2026-05-01 |
| CVE-2026-43005 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: hwmon:... 在Linux核心中,以下漏洞已解決: hwmon:(tps53679)透... | 2026-05-01 |
| CVE-2026-43004 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: spi: s... 在Linux核心中,以下漏洞已解決: spi:stm32-ospi:修正r... | 2026-05-01 |
| CVE-2026-43010 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: bpf: R... 在Linux核心中,以下漏洞已解決: bpf:在連線時拒絕可休... | 2026-05-01 |
| CVE-2026-31785 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: drm/xe... 在Linux核心中,以下漏洞已解決: drm/xe/xe_pagefault:... | 2026-05-01 |
| CVE-2026-31784 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: drm/xe... 在Linux核心中,以下漏洞已解決: drm/xe/pxp:跳回後清除... | 2026-05-01 |
| CVE-2026-31777 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ALSA:... 在Linux核心中,以下漏洞已解決: ALSA:ctxfi:檢查索引... | 2026-05-01 |
| CVE-2026-31778 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ALSA:... 在Linux核心中,以下漏洞已解決: ALSA:caiaq:修復 init... | 2026-05-01 |
| CVE-2026-31779 | 高 | 8.1 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: wifi:... 在Linux核心中,以下漏洞已解決: wifi: iwlwifi: mvm: 修... | 2026-05-01 |
| CVE-2026-31780 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: wifi:... 在Linux核心中,以下漏洞已解決: wifi:wilc1000:修正 S... | 2026-05-01 |
| CVE-2026-31781 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: drm/io... 在Linux核心中,以下漏洞已解決: drm/ioc32:停止對 drm_... | 2026-05-01 |
| CVE-2026-31782 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: perf/x... 在Linux核心中,以下漏洞已解決: perf/x86:修正 intel_p... | 2026-05-01 |
| CVE-2026-31783 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: spi: a... 在Linux核心中,以下漏洞已解決: spi:amlogic:spifc-a4... | 2026-05-01 |
| CVE-2026-31771 | 高 | 8.1 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: Blueto... 在Linux核心中,以下漏洞已解決: 藍牙:hci_event:將喚... | 2026-05-01 |
| CVE-2026-31769 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: gpib:... 在Linux核心中,以下漏洞已解決: gpib:修正 IO ioctl 處... | 2026-05-01 |
| CVE-2026-31770 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: hwmon:... 在Linux核心中,以下漏洞已解決: hwmon:(occ)修正 occ... | 2026-05-01 |
| CVE-2026-31772 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: Blueto... 在Linux核心中,以下漏洞已解決: 藍牙:hci_sync:修正 h... | 2026-05-01 |
| CVE-2026-31773 | 高 | 8.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: Blueto... 在Linux核心中,以下漏洞已解決: 藍牙:SMP:從 MITM 狀... | 2026-05-01 |
| CVE-2026-31776 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ALSA:... 在Linux核心中,以下漏洞已解決: ALSA:ctxfi:修復遺失... | 2026-05-01 |
| CVE-2026-31775 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ALSA:... 在Linux核心中,以下漏洞已解決: ALSA:ctxfi:在 DAIO... | 2026-05-01 |
| CVE-2026-31774 | 高 | 7.1 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: io_uri... 在Linux核心中,以下漏洞已解決: io_uring/net:修正 io_... | 2026-05-01 |
| CVE-2026-31768 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: iio: a... 在Linux核心中,以下漏洞已解決: iio: adc: ti-adc161s62... | 2026-05-01 |
| CVE-2026-31767 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: drm/i9... 在Linux核心中,以下漏洞已解決: drm/i915/dsi: Don't do... | 2026-05-01 |
| CVE-2026-31766 | 高 | 7.1 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: drm/am... 在Linux核心中,以下漏洞已解決: drm/amdgpu:驗證使用者... | 2026-05-01 |
| CVE-2026-31765 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: drm/am... 在Linux核心中,以下漏洞已解決: drm/amdgpu:將 AMDGPU_... | 2026-05-01 |
| CVE-2026-31764 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: iio: i... 在Linux核心中,以下漏洞已解決: iio: imu: st_lsm6dsx:... | 2026-05-01 |
| CVE-2026-31763 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: iio: g... 在Linux核心中,以下漏洞已解決: iio:陀螺儀:mpu3050:... | 2026-05-01 |
| CVE-2026-31762 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: iio: g... 在Linux核心中,以下漏洞已解決: iio:陀螺儀:mpu3050:... | 2026-05-01 |
| CVE-2026-31761 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: iio: g... 在Linux核心中,以下漏洞已解決: iio:陀螺儀:mpu3050:... | 2026-05-01 |
| CVE-2026-31760 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: gpib:... 在Linux核心中,以下漏洞已解決: gpib:lpvo_usb:修復斷... | 2026-05-01 |
| CVE-2026-31759 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: usb: u... 在Linux核心中,以下漏洞已解決: USB:ulpi:修正 ulpi_r... | 2026-05-01 |
| CVE-2026-31752 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: bridge... 在Linux核心中,以下漏洞已解決: 橋:br_nd_send:驗證 N... | 2026-05-01 |
| CVE-2026-31753 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: auxdis... 在Linux核心中,以下漏洞已解決: auxdisplay:行顯示:修... | 2026-05-01 |
| CVE-2026-31754 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: usb: c... 在Linux核心中,以下漏洞已解決: USB: CDNS3: gadget:修... | 2026-05-01 |
| CVE-2026-31755 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: usb: c... 在Linux核心中,以下漏洞已解決: usb: cdns3: gadget: 修... | 2026-05-01 |
| CVE-2026-31756 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: usb: d... 在Linux核心中,以下漏洞已解決: usb: dwc2: gadget:修... | 2026-05-01 |
| CVE-2026-31757 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: usb: m... 在Linux核心中,以下漏洞已解決: usb: 雜項: usbio: 修復... | 2026-05-01 |
| CVE-2026-31758 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: usb: u... 在Linux核心中,以下漏洞已解決: usb: usbtmc: 刷新 usbt... | 2026-05-01 |
| CVE-2026-31745 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: reset:... 在Linux核心中,以下漏洞已解決: 重置:gpio:修正reset_... | 2026-05-01 |
| CVE-2026-31746 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: s390/z... 在Linux核心中,以下漏洞已解決: s390/zcrypt:修復 CCA... | 2026-05-01 |
| CVE-2026-31744 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: PM: EM... 在Linux核心中,以下漏洞已解決: PM:EM:修正未找到效能... | 2026-05-01 |
| CVE-2026-31743 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: nvmem:... 在Linux核心中,以下漏洞已解決: nvmem:zynqmp_nvmem:... | 2026-05-01 |
| CVE-2026-31750 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: comedi... 在Linux核心中,以下漏洞已解決: comedi:runflags 無法... | 2026-05-01 |
| CVE-2026-31748 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: comedi... 在Linux核心中,以下漏洞已解決: comedi:me_daq:修復韌... | 2026-05-01 |
| CVE-2026-31749 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: comedi... 在Linux核心中,以下漏洞已解決: comedi:ni_atmio16d:... | 2026-05-01 |
| CVE-2026-31751 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: comedi... 在Linux核心中,以下漏洞已解決: Comedi:dt2815:增加硬... | 2026-05-01 |
| CVE-2026-31747 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: comedi... 在Linux核心中,以下漏洞已解決: comedi:me4000:修復韌... | 2026-05-01 |
| CVE-2026-31734 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: sched_... 在Linux核心中,以下漏洞已解決: sched_ext:修正非 PREE... | 2026-05-01 |
| CVE-2026-31735 | 高 | 8.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: iommup... 在Linux核心中,以下漏洞已解決: iommupt:如果取消映射... | 2026-05-01 |
| CVE-2026-31736 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: e... 在Linux核心中,以下漏洞已解決: net: ethernet: mtk_ppe... | 2026-05-01 |
| CVE-2026-31737 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: f... 在Linux核心中,以下漏洞已解決: net:ftgmac100:修正開... | 2026-05-01 |
| CVE-2026-31738 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: vxlan:... 在Linux核心中,以下漏洞已解決: vxlan:驗證 vxlan_na_c... | 2026-05-01 |
| CVE-2026-31739 | 高 | 8.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: crypto... 在Linux核心中,以下漏洞已解決: crypto: tegra - 加入缺... | 2026-05-01 |
| CVE-2026-31740 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: counte... 在Linux核心中,以下漏洞已解決: 計數器:rz-mtu3-cnt:... | 2026-05-01 |
| CVE-2026-31741 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: counte... 在Linux核心中,以下漏洞已解決: 計數器:rz-mtu3-cnt:... | 2026-05-01 |
| CVE-2026-31742 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: vt: di... 在Linux核心中,以下漏洞已解決: vt:調整大小後在備用畫... | 2026-05-01 |
| CVE-2026-31733 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: sched_... 在Linux核心中,以下漏洞已解決: sched_ext:修復 ddsp_d... | 2026-05-01 |
| CVE-2026-31732 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: gpio:... 在Linux核心中,以下漏洞已解決: gpio:修正 gpiochip_ad... | 2026-05-01 |
| CVE-2026-31731 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: therma... 在Linux核心中,以下漏洞已解決: 熱:核心:解決熱區域移... | 2026-05-01 |
| CVE-2026-31730 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: misc:... 在Linux核心中,以下漏洞已解決: 雜項:fastrpc:可能雙... | 2026-05-01 |
| CVE-2026-31729 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: usb: t... 在Linux核心中,以下漏洞已解決: usb: typec: ucsi: 驗證... | 2026-05-01 |
| CVE-2026-31728 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: usb: g... 在Linux核心中,以下漏洞已解決: USB:小工具:u_ether:... | 2026-05-01 |
| CVE-2026-31727 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: usb: g... 在Linux核心中,以下漏洞已解決: usb: gadget: u_ether:... | 2026-05-01 |
| CVE-2026-31726 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: usb: g... 在Linux核心中,以下漏洞已解決: USB:小工具:uvc:修正... | 2026-05-01 |
| CVE-2026-31725 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: usb: g... 在Linux核心中,以下漏洞已解決: USB:小工具:f_ecm:使... | 2026-05-01 |
| CVE-2026-31720 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: usb: g... 在Linux核心中,以下漏洞已解決: USB:小工具:f_uac1_le... | 2026-05-01 |
| CVE-2026-31721 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: usb: g... 在Linux核心中,以下漏洞已解決: USB:小工具:f_hid:將... | 2026-05-01 |
| CVE-2026-31723 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: usb: g... 在Linux核心中,以下漏洞已解決: usb: gadget: f_subset:... | 2026-05-01 |
| CVE-2026-31724 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: usb: g... 在Linux核心中,以下漏洞已解決: USB:小工具:f_eem:使... | 2026-05-01 |
| CVE-2026-31722 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: usb: g... 在Linux核心中,以下漏洞已解決: USB:小工具:f_rndis:... | 2026-05-01 |
| CVE-2026-31719 | 高 | 7.5 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: crypto... 在Linux核心中,以下漏洞已解決: 加密:krb5enc - 修復非... | 2026-05-01 |
| CVE-2026-31713 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: fuse:... 在Linux核心中,以下漏洞已解決: 保險絲:在同步初始化期... | 2026-05-01 |
| CVE-2026-31710 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: smb: c... 在Linux核心中,以下漏洞已解決: smb:客戶端:修復 SMB1... | 2026-05-01 |
| CVE-2026-31711 | 高 | 7.5 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: smb: s... 在Linux核心中,以下漏洞已解決: smb:伺服器:修復傳輸... | 2026-05-01 |
| CVE-2026-31712 | 高 | 8.3 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ksmbd:... 在Linux核心中,以下漏洞已解決: ksmbd:在 smb_check_pe... | 2026-05-01 |
| CVE-2026-31714 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: f2fs:... 在Linux核心中,以下漏洞已解決: f2fs:修正以避免 f2fs_... | 2026-05-01 |
| CVE-2026-31715 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: f2fs:... 在Linux核心中,以下漏洞已解決: f2fs:修正 f2fs_write_... | 2026-05-01 |
| CVE-2026-31716 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: fs/ntf... 在Linux核心中,以下漏洞已解決: fs/ntfs3: 驗證在日誌重... | 2026-05-01 |
| CVE-2026-31717 | 高 | 8.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ksmbd:... 在Linux核心中,以下漏洞已解決: ksmbd:重新連線時驗證... | 2026-05-01 |
| CVE-2026-31718 | 嚴重 | 9.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ksmbd:... 在Linux核心中,以下漏洞已解決: ksmbd:透過持久清除程... | 2026-05-01 |
| CVE-2026-31709 | 高 | 8.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: smb: c... 在Linux核心中,以下漏洞已解決: smb:客戶端:在 cifsac... | 2026-05-01 |
| CVE-2026-31708 | 高 | 8.1 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: smb: c... 在Linux核心中,以下漏洞已解決: smb:客戶端:修正 smb2... | 2026-05-01 |
| CVE-2026-31707 | 高 | 7.1 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ksmbd:... 在Linux核心中,以下漏洞已解決: ksmbd:驗證 ipc_valida... | 2026-05-01 |
| CVE-2026-31706 | 高 | 8.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ksmbd:... 在Linux核心中,以下漏洞已解決: ksmbd:驗證 num_aces... | 2026-05-01 |
| CVE-2026-31705 | 嚴重 | 9.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ksmbd:... 在Linux核心中,以下漏洞已解決: ksmbd:修正 smb2_get_e... | 2026-05-01 |
| CVE-2026-31704 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ksmbd:... 在Linux核心中,以下漏洞已解決: ksmbd:使用 check_add_... | 2026-05-01 |
| CVE-2026-31703 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: writeb... 在Linux核心中,以下漏洞已解決: 寫回:修正 inode_switc... | 2026-05-01 |
| CVE-2026-31702 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: f2fs:... 在Linux核心中,以下漏洞已解決: f2fs:修正 f2fs_compre... | 2026-05-01 |
| CVE-2026-31701 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ALSA:... 在Linux核心中,以下漏洞已解決: ALSA:caiaq:在 create... | 2026-05-01 |
| CVE-2026-31700 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net/pa... 在Linux核心中,以下漏洞已解決: net/packet:修正 tpack... | 2026-05-01 |
| CVE-2026-31699 | 高 | 7.1 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: crypto... 在Linux核心中,以下漏洞已解決: crypto: ccp: 如果 PSP... | 2026-05-01 |
| CVE-2026-31698 | 高 | 7.1 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: crypto... 在Linux核心中,以下漏洞已解決: crypto: ccp: 如果 PSP... | 2026-05-01 |
| CVE-2026-31697 | 高 | 7.1 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: crypto... 在Linux核心中,以下漏洞已解決: crypto: ccp: 如果 PSP... | 2026-05-01 |
| CVE-2026-31696 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: rxrpc:... 在Linux核心中,以下漏洞已解決: rxrpc:修正非 XDR 金鑰... | 2026-05-01 |
| CVE-2026-31695 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: wifi:... 在Linux核心中,以下漏洞已解決: wifi:virt_wifi:刪除... | 2026-05-01 |
| CVE-2026-31694 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: fuse:... 在Linux核心中,以下漏洞已解決: 保險絲:拒絕頁面快取中... | 2026-05-01 |
| CVE-2026-3772 | 高 | 8.8 | PHP | The WP Editor plugin for WordPress is vulnerable to Cross-Site Request Forg... WordPress 的 WP 編輯器外掛程式在 1.2.9.2 及之前的所有版... | 2026-05-01 |
| CVE-2026-42404 | 中 | 6.5 | Apache | Apache Neethi does not impose any restrictions on URIs when manually fetchi... 透過 PolicyReference API 手動取得遠端原則參考時,Apache... | 2026-05-01 |
| CVE-2026-7567 | 嚴重 | 9.8 | PHP | The Temporary Login plugin for WordPress is vulnerable to Authentication By... WordPress 的暫時登入外掛程式在 1.0.0 及以下版本中容易受... | 2026-05-01 |
| CVE-2026-40684 | 中 | 5.9 | Linux OS | In Exim before 4.99.2, on systems using musl libc (not glibc), an attacker... 在 4.99.2 之前的 Exim 中,在使用 musl libc(而非 glibc... | 2026-04-30 |
| CVE-2022-50993 | 嚴重 | 9.8 | PHP | Weaver (Fanwei) E-office versions prior to 10.0_20221201 contain an unauthe... Weaver (Fanwei) E-office 10.0_20221201 先前的版本在 Off... | 2026-04-30 |
| CVE-2026-31693 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: cifs:... 在Linux核心中,以下漏洞已解決: cifs:重播時缺少一些初... | 2026-04-30 |
| CVE-2026-31787 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: xen/pr... 在Linux核心中,以下漏洞已解決: xen/privcmd:透過 VMA... | 2026-04-30 |
| CVE-2026-31786 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: Buffer... 在Linux核心中,以下漏洞已解決: drivers/xen/sys-hyperv... | 2026-04-30 |
| CVE-2026-31692 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: rtnetl... 在Linux核心中,以下漏洞已解決: rtnetlink:新增缺少的... | 2026-04-30 |
| CVE-2026-6498 | 中 | 5.3 | PHP | The Five Star Restaurant Reservations plugin for WordPress is vulnerable to... WordPress 的五星級餐廳預訂外掛程式在 2.7.16 及之前的版... | 2026-04-30 |
| CVE-2026-6524 | 中 | 5.5 | MySQL | MySQL protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4... Wireshark 4.6.0 至 4.6.4 和 4.4.0 至 4.4.14 中的 MySQL... | 2026-04-30 |
| CVE-2026-7381 | 嚴重 | 9.1 | Linux OS | Plack::Middleware::XSendfile versions through 1.0053 for Perl can allow cli... Perl 的 Plack::Middleware::XSendfile 版本到 1.0053 可以... | 2026-04-29 |
| CVE-2026-34965 | 高 | 8.8 | PHP | Cockpit CMS contains an authenticated remote code execution vulnerability i... Cockpit CMS 在 /cockpit/collections/save_collection 端... | 2026-04-29 |
| CVE-2026-41499 | 中 | 6.5 | Linux OS | Wazuh is a free and open source platform used for threat prevention, detect... Wazuh 是一個免費的開源平台,用於威脅預防、偵測和回應。... | 2026-04-29 |
| CVE-2026-7363 | 高 | 8.8 | Linux OS Chrome | Use after free in Canvas in Google Chrome on Linux, ChromeOS prior to 147.0... Linux 上的 Google Chrome 中的 Canvas 中的免費使用後,14... | 2026-04-28 |
| CVE-2026-7361 | 高 | 8.8 | Chrome | Use after free in iOS in Google Chrome prior to 147.0.7727.138 allowed a re... 在 147.0.7727.138 之前的 iOS 中的 Google Chrome 中使用... | 2026-04-28 |
| CVE-2026-7360 | 低 | 3.1 | Chrome | Insufficient validation of untrusted input. in Compositing in Google Chrome... 對不受信任的輸入驗證不充分。 147.0.7727.138 之前的 Goog... | 2026-04-28 |
| CVE-2026-7359 | 高 | 8.8 | Chrome | Use after free in ANGLE in Google Chrome prior to 147.0.7727.138 allowed a... 在 147.0.7727.138 之前的 Google Chrome ANGLE 中使用 aft... | 2026-04-28 |
| CVE-2026-7358 | 高 | 8.8 | Chrome | Use after free in Animation in Google Chrome prior to 147.0.7727.138 allowe... 在 147.0.7727.138 之前的 Google Chrome 動畫中使用 after... | 2026-04-28 |
| CVE-2026-7357 | 高 | 7.5 | Chrome | Use after free in GPU in Google Chrome prior to 147.0.7727.138 allowed a re... 147.0.7727.138 之前的 Google Chrome 中的 GPU 中的釋放後... | 2026-04-28 |
| CVE-2026-7356 | 高 | 8.8 | Chrome | Use after free in Navigation in Google Chrome prior to 147.0.7727.138 allow... 在 147.0.7727.138 之前的 Google Chrome 導覽中使用 after... | 2026-04-28 |
| CVE-2026-7355 | 高 | 8.8 | Chrome | Use after free in Media in Google Chrome prior to 147.0.7727.138 allowed a... 在 147.0.7727.138 之前的 Google Chrome 媒體中使用 after... | 2026-04-28 |
| CVE-2026-7354 | 高 | 8.8 | Chrome | Out of bounds read and write in Angle in Google Chrome prior to 147.0.7727.... 147.0.7727.138 之前的 Google Chrome 中 Angle 的越界讀寫... | 2026-04-28 |
| CVE-2026-7353 | 高 | 8.3 | Chrome | Heap buffer overflow in Skia in Google Chrome prior to 147.0.7727.138 allow... 147.0.7727.138 之前的 Google Chrome 中的 Skia 中的堆緩... | 2026-04-28 |
| CVE-2026-7352 | 高 | 8.3 | Chrome | Use after free in Media in Google Chrome on Android prior to 147.0.7727.138... 在 147.0.7727.138 之前的 Android 上的 Google Chrome 媒... | 2026-04-28 |
| CVE-2026-7351 | 低 | 3.1 | Chrome | Race in MHTML in Google Chrome prior to 147.0.7727.138 allowed an attacker... 147.0.7727.138 之前的 Google Chrome 中的 MHTML 競爭允許... | 2026-04-28 |
| CVE-2026-7350 | 高 | 8.3 | Chrome | Use after free in WebMIDI in Google Chrome prior to 147.0.7727.138 allowed... 147.0.7727.138 之前的 Google Chrome 中的 WebMIDI 中的釋... | 2026-04-28 |
| CVE-2026-7349 | 高 | 7.5 | Chrome | Use after free in Cast in Google Chrome prior to 147.0.7727.138 allowed an... 147.0.7727.138 之前的 Google Chrome 中的 Cast 中的釋放... | 2026-04-28 |
| CVE-2026-7348 | 高 | 8.8 | Chrome | Use after free in Codecs in Google Chrome prior to 147.0.7727.138 allowed a... 在 147.0.7727.138 之前的 Google Chrome 編解碼器中使用 a... | 2026-04-28 |
| CVE-2026-7347 | 高 | 8.1 | Chrome | Use after free in Chromoting in Google Chrome prior to 147.0.7727.138 allow... 在 147.0.7727.138 之前的 Google Chrome Chromoting 中使... | 2026-04-28 |
| CVE-2026-7346 | 高 | 8.1 | Chrome | Inappropriate implementation in Tint in Google Chrome prior to 147.0.7727.1... 147.0.7727.138 之前的 Google Chrome 中的 Tint 實施不當... | 2026-04-28 |
| CVE-2026-7345 | 高 | 8.3 | Chrome | Insufficient validation of untrusted input in Feedback in Google Chrome pri... 在 147.0.7727.138 之前的版本中,Google Chrome 中的回饋... | 2026-04-28 |
| CVE-2026-7344 | 高 | 8.8 | Chrome | Use after free in Accessibility in Google Chrome on Windows prior to 147.0.... 147.0.7727.138 之前的 Windows 上 Google Chrome 的輔助功... | 2026-04-28 |
| CVE-2026-7343 | 高 | 7.5 | Chrome | Use after free in Views in Google Chrome on Windows prior to 147.0.7727.138... 147.0.7727.138 之前的 Windows 上的 Google Chrome 視圖中... | 2026-04-28 |
| CVE-2026-7342 | 高 | 8.8 | Chrome | Use after free in WebView in Google Chrome on Android prior to 147.0.7727.1... 在 147.0.7727.138 之前的 Android 上的 Google Chrome 中... | 2026-04-28 |
| CVE-2026-7341 | 高 | 8.8 | Chrome | Use after free in WebRTC in Google Chrome prior to 147.0.7727.138 allowed a... 在 147.0.7727.138 之前版本的 Google Chrome 中的 WebRTC... | 2026-04-28 |
| CVE-2026-7340 | 中 | 4.3 | Chrome | Integer overflow in ANGLE in Google Chrome on Windows prior to 147.0.7727.1... 147.0.7727.138 之前的 Windows 上的 Google Chrome 中的 A... | 2026-04-28 |
| CVE-2026-7339 | 高 | 8.8 | Chrome | Heap buffer overflow in WebRTC in Google Chrome prior to 147.0.7727.138 all... 147.0.7727.138 之前的 Google Chrome 中的 WebRTC 中的堆... | 2026-04-28 |
| CVE-2026-7338 | 高 | 7.5 | Chrome | Use after free in Cast in Google Chrome prior to 147.0.7727.138 allowed an... 147.0.7727.138 先前版本的 Google Chrome 中的 Cast 中的... | 2026-04-28 |
| CVE-2026-7337 | 高 | 8.8 | Chrome | Type Confusion in V8 in Google Chrome prior to 147.0.7727.138 allowed a rem... 147.0.7727.138 先前版本的 Google Chrome V8 中的類型混淆... | 2026-04-28 |
| CVE-2026-7336 | 高 | 8.8 | Chrome | Use after free in WebRTC in Google Chrome prior to 147.0.7727.138 allowed a... 在 147.0.7727.138 之前版本的 Google Chrome 中的 WebRTC... | 2026-04-28 |
| CVE-2026-7335 | 高 | 8.8 | Chrome | Use after free in media in Google Chrome prior to 147.0.7727.138 allowed a... 在 147.0.7727.138 之前的 Google Chrome 媒體中使用 after... | 2026-04-28 |
| CVE-2026-7334 | 高 | 8.8 | Chrome | Use after free in Views in Google Chrome on Mac prior to 147.0.7727.138 all... 在 147.0.7727.138 之前的 Mac 上的 Google Chrome 視圖中... | 2026-04-28 |
| CVE-2026-7333 | 嚴重 | 9.6 | Chrome | Use after free in GPU in Google Chrome prior to 147.0.7727.138 allowed a re... 147.0.7727.138 之前的 Google Chrome 中的 GPU 中的釋放後... | 2026-04-28 |
| CVE-2026-27760 | 高 | 8.1 | PHP | OpenCATS prior to commit 3002a29 contains a PHP code injection vulnerabilit... 提交 3002a29 之前的 OpenCATS 在安裝程式 AJAX 端點中包含... | 2026-04-28 |
| CVE-2026-35368 | 高 | 7.8 | Linux OS | A vulnerability exists in the chroot utility of uutils coreutils when using... 使用 --userspec 選項時,uutils coreutils 的 chroot 實用... | 2026-04-22 |
| CVE-2026-31457 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: mm/dam... 在Linux核心中,以下漏洞已解決: mm/damon/sysfs:檢查re... | 2026-04-22 |
| CVE-2026-31433 | 高 | 8.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ksmbd:... Linux 核心 ksmbd 模組在處理複合請求時存在越界寫入漏洞,... | 2026-04-22 |
| CVE-2026-31431 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: crypto:... Linux 核心 crypto algif_aead 模組存在不當資源傳遞漏洞(... | 2026-04-22 |
| CVE-2026-35229 | 高 | 7.5 | Oracle | Vulnerability in the Java VM component of Oracle Database Server. Supporte... Oracle 数据库服务器的 Java VM 组件中的漏洞。 受影响的... | 2026-04-21 |
| CVE-2026-34315 | 中 | 6.5 | Oracle | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middle... | 2026-04-21 |
| CVE-2026-34312 | 低 | 2.4 | Oracle | Vulnerability in the RDBMS component of Oracle Database Server. Supported... Oracle 数据库服务器的 RDBMS 组件中的漏洞。 受影響的受... | 2026-04-21 |
| CVE-2026-34305 | 高 | 7.5 | Oracle | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middle... Oracle Fusion Middleware(元件:Web 服務)的 Oracle Web... | 2026-04-21 |
| CVE-2026-34292 | 高 | 7.2 | Oracle | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middle... Oracle Fusion Middleware(元件:Core)的 Oracle WebLogi... | 2026-04-21 |
| CVE-2026-22021 | 中 | 5.3 | Oracle | Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM... Oracle Java SE、Oracle GraalVM for JDK、Oracle Java SE... | 2026-04-21 |
| CVE-2026-22016 | 高 | 7.5 | Oracle | Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM... Oracle Java SE、Oracle GraalVM for JDK、Oracle Java SE... | 2026-04-21 |
| CVE-2026-22018 | 低 | 3.7 | Oracle | Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM... Oracle Java SE、Oracle GraalVM for JDK、Oracle Java SE... | 2026-04-21 |
| CVE-2026-22013 | 中 | 5.3 | Oracle | Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM... Oracle Java SE、Oracle GraalVM for JDK、Oracle Java SE... | 2026-04-21 |
| CVE-2026-22007 | 低 | 2.9 | Oracle | Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM... Oracle Java SE、Oracle GraalVM for JDK、Oracle Java SE... | 2026-04-21 |
| CVE-2026-22008 | 低 | 3.7 | Oracle | Vulnerability in Oracle Java SE (component: Libraries). The supported ver... Oracle Java SE 中的漏洞(元件:庫)。 受影響的支援版... | 2026-04-21 |
| CVE-2026-22003 | 中 | 6 | Oracle | Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition prod... Oracle Java SE、Oracle Java SE 的 Oracle GraalVM 企業版... | 2026-04-21 |
| CVE-2026-21999 | 中 | 5.3 | Oracle | Vulnerability in the XML Database component of Oracle Database Server. Sup... Oracle 資料庫伺服器的 XML 資料庫元件中的漏洞。 受影響... | 2026-04-21 |
| CVE-2026-5234 | 中 | 5.3 | Oracle | The LatePoint plugin for WordPress is vulnerable to Insecure Direct Object... WordPress 的 LatePoint 外掛程式在 5.3.2 及之前的所有版... | 2026-04-17 |
| CVE-2026-39418 | 中 | 5 | Linux OS | MaxKB is an open-source AI assistant for enterprise. In versions 2.7.1 and... MaxKB是一款以企業為導向的開源人工智慧助理。在 2.7.1 及... | 2026-04-14 |
| CVE-2026-40223 | 中 | 4.7 | Linux OS | In systemd 258 before 260, a local unprivileged user can trigger an assert... 在 260 之前的 systemd 258 中,當 Delegate=yes 且 User=<... | 2026-04-10 |
| CVE-2026-34500 | 中 | 6.5 | Apache | CLIENT_CERT authentication does not fail as expected for some scenarios whe... 當停用軟故障並且在 Apache Tomcat 中使用 FFM 時,CLIENT_... | 2026-04-09 |
| CVE-2026-34487 | 高 | 7.5 | Apache | Insertion of Sensitive Information into Log File vulnerability in the cloud... Apache Tomcat 叢集元件的雲端成員資格中的「將敏感資訊插... | 2026-04-09 |
| CVE-2026-34486 | 高 | 7.5 | Apache | Missing Encryption of Sensitive Data vulnerability in Apache Tomcat due to... 由於 CVE-2026-29146 的修復允許繞過 EncryptInterceptor,... | 2026-04-09 |
| CVE-2026-34483 | 高 | 7.5 | Apache | Improper Encoding or Escaping of Output vulnerability in the JsonAccessLogV... Apache Tomcat 的 JsonAccessLogValve 元件中的輸出編碼或... | 2026-04-09 |
| CVE-2026-32990 | 中 | 5.3 | Apache | Improper Input Validation vulnerability in Apache Tomcat due to an incomple... 由於 CVE-2025-66614 修正不完整,Apache Tomcat 中存在不... | 2026-04-09 |
| CVE-2026-29146 | 高 | 7.5 | Apache Oracle | Padding Oracle vulnerability in Apache Tomcat's EncryptInterceptor with def... 使用預設設定填滿 Apache Tomcat 的 EncryptInterceptor 中... | 2026-04-09 |
| CVE-2026-29145 | 嚴重 | 9.1 | Apache | CLIENT_CERT authentication does not fail as expected for some scenarios whe... 當 Apache Tomcat、Apache Tomcat Native 中的軟故障被停用... | 2026-04-09 |
| CVE-2026-29129 | 高 | 7.5 | Apache | Configured cipher preference order not preserved vulnerability in Apache To... Apache Tomcat 中配置的密碼首選項順序未保留漏洞。 此問... | 2026-04-09 |
| CVE-2026-25854 | 中 | 6.1 | Apache | Occasional URL redirection to untrusted Site ('Open Redirect') vulnerabilit... Apache Tomcat 中透過 LoadBalancerDrainingValve 偶爾出現... | 2026-04-09 |
| CVE-2026-24880 | 高 | 7.5 | Apache | Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggl... Apache Tomcat 中透過無效區塊擴充對 HTTP 請求的解釋不一... | 2026-04-09 |
| CVE-2026-39314 | 中 | 4 | Linux OS | OpenPrinting CUPS is an open source printing system for Linux and other Uni... OpenPrinting CUPS 是一個適用於 Linux 和其他類 Unix 作業... | 2026-04-07 |
| CVE-2026-34990 | 高 | 7.8 | Linux OS | OpenPrinting CUPS is an open source printing system for Linux and other Uni... OpenPrinting CUPS 是一個適用於 Linux 和其他類 Unix 作業... | 2026-04-03 |
| CVE-2026-35549 | 中 | 6.5 | MySQL | An issue was discovered in MariaDB Server before 11.4.10, 11.5.x through 11... 在 11.4.10 之前的 MariaDB 伺服器、11.8.6 之前的 11.5.x... | 2026-04-03 |
| CVE-2026-35414 | 中 | 4.2 | Linux OS | OpenSSH before 10.3 mishandles the authorized_keys principals option in unc... 10.3 之前的 OpenSSH 在涉及主體清單與使用逗號字元的憑證... | 2026-04-02 |
| CVE-2026-35385 | 高 | 7.5 | Linux OS | In OpenSSH before 10.3, a file downloaded by scp may be installed setuid or... 在 10.3 之前的 OpenSSH 中,如果使用 -O(舊版 scp 協定)... | 2026-04-02 |
| CVE-2026-35386 | 低 | 3.6 | Linux OS | In OpenSSH before 10.3, command execution can occur via shell metacharacter... 在 10.3 之前的 OpenSSH 中,命令執行可以透過命令列中使用... | 2026-04-02 |
| CVE-2026-35387 | 低 | 3.1 | Linux OS | OpenSSH before 10.3 can use unintended ECDSA algorithms. Listing of any ECD... 10.3 之前的 OpenSSH 可以使用非預期的 ECDSA 演算法。 Pub... | 2026-04-02 |
| CVE-2026-35388 | 低 | 2.5 | Linux OS | OpenSSH before 10.3 omits connection multiplexing confirmation for proxy-mo... 10.3 之前的 OpenSSH 省略了代理模式多工會話的連線多工確... | 2026-04-02 |
| CVE-2026-33945 | 嚴重 | 9.9 | Linux OS | Incus is a system container and virtual machine manager. Incus instances ha... Incus 是一個系統容器和虛擬機器管理器。 Incus 實例可以選... | 2026-03-27 |
| CVE-2026-33375 | 中 | 6.5 | MSSQL | The Grafana MSSQL data source plugin contains a logic flaw that allows a lo... Grafana MSSQL 資料來源外掛程式包含一個邏輯缺陷,允許低... | 2026-03-26 |
| CVE-2026-0964 | 中 | 6.3 | Linux OS | A malicious SCP server can send unexpected paths that could make the client... 惡意 SCP 伺服器可以發送意外路徑,從而導致 客戶端應用程... | 2026-03-26 |
| CVE-2026-23369 | 中 | 5.5 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: i2c: i... 在Linux核心中,以下漏洞已解決: i2c: i801: 恢復“i2c: i... | 2026-03-25 |
| CVE-2026-29111 | 中 | 5.5 | Linux OS | systemd, a system and service manager, (as PID 1) hits an assert and freeze... systemd 是一個系統和服務管理員(PID 1),當使用虛假資料... | 2026-03-23 |
| CVE-2019-25598 | 中 | 6.2 | MSSQL | HeidiSQL Portable 10.1.0.5464 contains a denial of service vulnerability th... HeidiSQL Portable 10.1.0.5464 包含拒絕服務漏洞,允許本... | 2026-03-22 |
| CVE-2026-32046 | 中 | 5.3 | Chrome | OpenClaw versions prior to 2026.2.21 contain an improper sandbox configurat... 2026.2.21 之前的 OpenClaw 版本包含不正確的沙箱配置漏洞... | 2026-03-21 |
| CVE-2026-32710 | 高 | 8.5 | MySQL MSSQL | MariaDB server is a community developed fork of MySQL server. An authentica... MariaDB 伺服器是社群開發的 MySQL 伺服器分支。經過驗證的... | 2026-03-20 |
| CVE-2026-33081 | 中 | 5.8 | Chrome | PinchTab is a standalone HTTP server that gives AI agents direct control ov... PinchTab 是一個獨立的 HTTP 伺服器,讓 AI 代理直接控制 C... | 2026-03-20 |
| CVE-2025-58112 | 高 | 8.8 | MSSQL | Microsoft Dynamics 365 Customer Engagement (on-premises) 1612 (9.0.2.3034)... Microsoft Dynamics 365 Customer Engagement (on-premises... | 2026-03-18 |
| CVE-2026-22730 | 高 | 8.8 | MySQL | A critical SQL injection vulnerability in Spring AI's MariaDBFilterExpressi... Spring AI 的 MariaDBFilterExpressionConverter 中存在一... | 2026-03-18 |
| CVE-2026-32606 | 高 | 7.6 | Linux OS | IncusOS is an immutable OS image dedicated to running Incus. Prior to 20260... IncusOS 是一個不可變的作業系統映像,專用於運行 Incus。... | 2026-03-18 |
| CVE-2026-27811 | 高 | 8.8 | Linux OS Apache | Roxy-WI is a web interface for managing Haproxy, Nginx, Apache and Keepaliv... Roxy-WI 是一個用於管理 Haproxy、Nginx、Apache 和 Keepal... | 2026-03-18 |
| CVE-2026-3888 | 高 | 7.8 | Linux OS | Local privilege escalation in snapd on Linux allows local attackers to get... Linux 上的 snapd 中的本機權限提升允許本機攻擊者透過重新... | 2026-03-17 |
| CVE-2026-28779 | 高 | 7.5 | Apache | Apache Airflow versions 3.1.0 through 3.1.7 session token (_token) in cooki... 無論設定的 [webserver] base_url 或 [api] base_url,Apac... | 2026-03-17 |
| CVE-2026-32628 | 高 | 8.8 | MySQL MSSQL | AnythingLLM is an application that turns pieces of content into context tha... AnythingLLM 是一個將內容片段轉換為上下文的應用程序,任... | 2026-03-16 |
| CVE-2016-20026 | 嚴重 | 9.8 | Apache | ZKTeco ZKBioSecurity 3.0 contains hardcoded credentials in the bundled Apac... ZKTeco ZKBioSecurity 3.0 在捆綁的 Apache Tomcat 伺服器... | 2026-03-16 |
| CVE-2026-4105 | 中 | 6.7 | Linux OS | A flaw was found in systemd. The systemd-machined service contains an Impro... systemd 中發現一個缺陷。由於 RegisterMachine D-Bus(桌... | 2026-03-13 |
| CVE-2026-23941 | N/A | - | Linux OS Apache | Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') vul... Erlang OTP(inets httpd 模組)中的 HTTP 請求解釋不一致... | 2026-03-13 |
| CVE-2026-3497 | N/A | - | Linux OS | Vulnerability in the OpenSSH GSSAPI delta included in various Linux distrib... 各種 Linux 發行版中所包含的 OpenSSH GSSAPI 增量中的漏洞... | 2026-03-12 |
| CVE-2026-3968 | 中 | 6.3 | Oracle | A vulnerability has been found in AutohomeCorp frostmourne up to 1.0. This... AutohomeCorp 霜之哀傷中已發現高達 1.0 的漏洞。這會影響... | 2026-03-12 |
| CVE-2026-31979 | 高 | 8.8 | Linux OS | Himmelblau is an interoperability suite for Microsoft Azure Entra ID and In... Himmelblau 是 Microsoft Azure Entra ID 和 Intune 的互通... | 2026-03-11 |
| CVE-2026-32063 | 高 | 7.1 | Linux OS | OpenClaw version 2026.2.19-2 prior to 2026.2.21 contains a command injectio... 2026.2.21 之前的 OpenClaw 版本 2026.2.19-2 在 systemd... | 2026-03-11 |
| CVE-2026-3288 | 高 | 8.8 | Linux OS | A security issue was discovered in ingress-nginx where the `nginx.ingress.k... 在 ingress-nginx 中發現了一個安全性問題,其中「nginx.in... | 2026-03-09 |
| CVE-2025-69651 | 中 | 5.5 | Linux OS | GNU Binutils thru 2.46 readelf contains a vulnerability that leads to an in... GNU Binutils 至 2.46 readelf 包含一個漏洞,在處理具有格... | 2026-03-06 |
| CVE-2026-27944 | 嚴重 | 9.8 | Linux OS | Nginx UI is a web user interface for the Nginx web server. Prior to version... Nginx UI 是 Nginx Web 伺服器的 Web 使用者介面。在版本 2... | 2026-03-05 |
| CVE-2025-40931 | 嚴重 | 9.1 | Linux OS Apache | Apache::Session::Generate::MD5 versions through 1.94 for Perl create insecu... Apache::Session::Generate::MD5 版本到 1.94,用於 Perl... | 2026-03-05 |
| CVE-2026-27446 | 嚴重 | 9.8 | Apache | Missing Authentication for Critical Function (CWE-306) vulnerability in Apa... Apache Artemis、Apache ActiveMQ Artemis 中缺少關鍵功能... | 2026-03-04 |
| CVE-2025-66168 | 中 | 5.4 | Apache | WARNING: Users of 6.x should upgrade to 6.2.4 or later as the fix was miss... 警告: 6.x 使用者應升級到 6.2.4 或更高版本,因為先前的... | 2026-03-04 |
| CVE-2026-3494 | 中 | 4.3 | MySQL | In MariaDB server version through 11.8.5, when server audit plugin is enabl... 在 MariaDB 伺服器版本至 11.8.5 中,當使用配置有 QUERY_D... | 2026-03-03 |
| CVE-2026-28372 | 高 | 7.4 | Linux OS | telnetd in GNU inetutils through 2.7 allows privilege escalation that can b... GNU inetutils 到 2.7 中的 telnetd 允許權限升級,可以透... | 2026-02-27 |
| CVE-2025-40932 | 高 | 8.2 | Apache | Apache::SessionX versions through 2.01 for Perl create insecure session id.... Perl 的 Apache::SessionX 版本到 2.01 建立不安全的會話 I... | 2026-02-27 |
| CVE-2026-27633 | 高 | 7.5 | Linux OS | TinyWeb is a web server (HTTP, HTTPS) written in Delphi for Win32. Versions... TinyWeb 是一個用 Delphi 為 Win32 所寫的 Web 伺服器(HTT... | 2026-02-26 |
| CVE-2026-27630 | 高 | 7.5 | Linux OS | TinyWeb is a web server (HTTP, HTTPS) written in Delphi for Win32. Versions... TinyWeb 是一個用 Delphi 為 Win32 所寫的 Web 伺服器(HTT... | 2026-02-26 |
| CVE-2026-25739 | 中 | 5.4 | Linux OS | Indico is an event management system that uses Flask-Multipass, a multi-bac... Indico 是使用 Flask-Multipass 的事件管理系統,Flask-Mul... | 2026-02-19 |
| CVE-2025-15560 | 高 | 8.8 | MSSQL | An authenticated attacker with minimal permissions can exploit a SQL inject... 具有最小權限的經過驗證的攻擊者可以利用 WorkTime 伺服器... | 2026-02-19 |
| CVE-2025-0577 | 中 | 4.8 | Linux OS | An insufficient entropy vulnerability was found in glibc. The getrandom and... glibc 中發現熵不足漏洞。如果在 fork 之後再次呼叫 getran... | 2026-02-18 |
| CVE-2026-24734 | 高 | 7.5 | Apache | Improper Input Validation vulnerability in Apache Tomcat Native, Apache Tom... Apache Tomcat Native、Apache Tomcat 中的不正確輸入驗證... | 2026-02-17 |
| CVE-2026-24733 | 低 | 3.7 | Apache | Improper Input Validation vulnerability in Apache Tomcat. Tomcat did not... Apache Tomcat 中的不正確輸入驗證漏洞。 Tomcat 沒有將... | 2026-02-17 |
| CVE-2025-66614 | 嚴重 | 9.1 | Apache | Improper Input Validation vulnerability. This issue affects Apache Tomcat:... 不正確的輸入驗證漏洞。 此問題影響 Apache Tomcat:從 11... | 2026-02-17 |
| CVE-2025-32063 | 中 | 6.8 | Linux OS | There is a misconfiguration vulnerability inside the Infotainment ECU manuf... BOSCH 製造的資訊娛樂 ECU 內部存在配置錯誤漏洞。此漏洞發... | 2026-02-15 |
| CVE-2026-23162 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: drm/xe... 在Linux核心中,以下漏洞已解決: drm/xe/nvm:修復輔助添... | 2026-02-14 |
| CVE-2026-23115 | 中 | 4.7 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: serial... 在Linux核心中,以下漏洞已解決: 序列:修復未設定 tty->... | 2026-02-14 |
| CVE-2026-26214 | 高 | 7.4 | Apache | Galaxy FDS Android SDK (XiaoMi/galaxy-fds-sdk-android) version 3.0.8 and pr... Galaxy FDS Android SDK (XiaoMi/galaxy-fds-sdk-android)... | 2026-02-12 |
| CVE-2026-2313 | 高 | 8.8 | Chrome | Use after free in CSS in Google Chrome prior to 145.0.7632.45 allowed a rem... 在 145.0.7632.45 之前的 Google Chrome 中使用 after free... | 2026-02-11 |
| CVE-2026-1357 | 嚴重 | 9.8 | Linux OS PHP | The Migration, Backup, Staging – WPvivid Backup & Migration plugin for Word... 遷移、備份、暫存 – WordPress 的 WPvivid 備份和遷移外掛... | 2026-02-11 |
| CVE-2026-23901 | 低 | 2.5 | Apache | Observable Timing Discrepancy vulnerability in Apache Shiro. This issue af... Apache Shiro 中可觀察到的時序差異漏洞。 此問題影響 Apa... | 2026-02-10 |
| CVE-2026-25923 | 嚴重 | 9.1 | MySQL PHP | my little forum is a PHP and MySQL based internet forum that displays the m... 我的小論壇是一個基於 PHP 和 MySQL 的網路論壇,它以經典... | 2026-02-09 |
| CVE-2026-25892 | 高 | 7.5 | Linux OS PHP | Adminer is open-source database management software. Adminer v5.4.1 and ear... Adminer 是開源資料庫管理軟體。 Adminer v5.4.1 及更早版... | 2026-02-09 |
| CVE-2026-2145 | 低 | 3.5 | Linux OS | A vulnerability was identified in cym1102 nginxWebUI up to 4.3.7. The impac... cym1102 nginxWebUI 至 4.3.7 版本中已發現漏洞。受影響的... | 2026-02-08 |
| CVE-2025-15566 | 高 | 8.8 | Linux OS | A security issue was discovered in ingress-nginx where the `nginx.ingress.k... 在 ingress-nginx 中發現了一個安全性問題,其中「nginx.in... | 2026-02-06 |
| CVE-2026-23055 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: i2c: r... 在Linux核心中,以下漏洞已解決: i2c:riic:將掛起處理... | 2026-02-04 |
| CVE-2026-1642 | 中 | 5.9 | Linux OS | A vulnerability exists in NGINX OSS and NGINX Plus when configured to proxy... 當配置為代理程式到上游傳輸層安全性 (TLS) 伺服器時,NGIN... | 2026-02-04 |
| CVE-2026-1580 | 高 | 8.8 | Linux OS | A security issue was discovered in ingress-nginx where the `nginx.ingress.k... 在 ingress-nginx 中發現了一個安全性問題,其中「nginx.in... | 2026-02-03 |
| CVE-2026-24512 | 高 | 8.8 | Linux OS | A security issue was discovered in ingress-nginx where the `rules.http.path... 在 ingress-nginx 中發現了一個安全性問題,其中 `rules.ht... | 2026-02-03 |
| CVE-2026-1862 | 高 | 8.8 | Chrome | Type Confusion in V8 in Google Chrome prior to 144.0.7559.132 allowed a rem... 144.0.7559.132 之前的 Google Chrome V8 中的類型混淆允許... | 2026-02-03 |
| CVE-2026-1861 | 高 | 8.8 | Chrome | Heap buffer overflow in libvpx in Google Chrome prior to 144.0.7559.132 all... 144.0.7559.132 之前的 Google Chrome 中的 libvpx 中的堆... | 2026-02-03 |
| CVE-2020-37116 | 高 | 8.8 | MySQL PHP | GUnet OpenEclass 1.7.3 includes phpMyAdmin 2.10.0.2 by default, which allow... GUnet OpenEclass 1.7.3 預設包含 phpMyAdmin 2.10.0.2,允... | 2026-02-03 |
| CVE-2026-1616 | 高 | 7.5 | Linux OS | The $uri$args concatenation in nginx configuration file present in Open Sec... v2025.9.0 之前的開放安全性問題管理 (OSIM) 中存在的 ngin... | 2026-01-29 |
| CVE-2026-1504 | 中 | 6.5 | Chrome | Inappropriate implementation in Background Fetch API in Google Chrome prior... 144.0.7559.110 之前的 Google Chrome 中的後台獲取 API 中... | 2026-01-27 |
| CVE-2026-22796 | 中 | 5.3 | Linux OS | Issue summary: A type confusion vulnerability exists in the signature verif... 問題摘要:簽名中存在類型混淆漏洞 驗證簽署的 PKCS#7 數據... | 2026-01-27 |
| CVE-2026-22795 | 中 | 5.5 | Linux OS | Issue summary: An invalid or NULL pointer dereference can happen in an appl... 問題摘要:無效或 NULL 指標取消引用可能發生在 處理格式錯... | 2026-01-27 |
| CVE-2025-69419 | 高 | 7.4 | Linux OS | Issue summary: Calling PKCS12_get_friendlyname() function on a maliciously... 問題摘要:惡意呼叫 PKCS12_get_Friendlyname() 函數 精心... | 2026-01-27 |
| CVE-2025-69420 | 高 | 7.5 | Linux OS | Issue summary: A type confusion vulnerability exists in the TimeStamp Respo... 問題摘要:TimeStamp Response 中存在類型混淆漏洞 無需先... | 2026-01-27 |
| CVE-2025-69421 | 高 | 7.5 | Linux OS | Issue summary: Processing a malformed PKCS#12 file can trigger a NULL point... 問題摘要:處理格式錯誤的 PKCS#12 檔案可能會觸發 NULL 指... | 2026-01-27 |
| CVE-2025-69418 | 中 | 4 | Linux OS | Issue summary: When using the low-level OCB API directly with AES-NI or<br>... 問題摘要:當直接將低階 OCB API 與 AES-NI 或<br>其他硬體... | 2026-01-27 |
| CVE-2025-66199 | 中 | 5.9 | Linux OS | Issue summary: A TLS 1.3 connection using certificate compression can be fo... 問題摘要:使用憑證壓縮的 TLS 1.3 連線可以 解壓縮前強制... | 2026-01-27 |
| CVE-2025-68160 | 中 | 4.7 | Linux OS | Issue summary: Writing large, newline-free data into a BIO chain using the... 問題摘要:使用以下命令將大型、無換行符的資料寫入 BIO 鏈... | 2026-01-27 |
| CVE-2025-15469 | 中 | 5.5 | Linux OS | Issue summary: The 'openssl dgst' command-line tool silently truncates inpu... 問題摘要:「openssl dgst」命令列工具默默地截斷輸入 使用... | 2026-01-27 |
| CVE-2025-11187 | 中 | 6.1 | Linux OS | Issue summary: PBMAC1 parameters in PKCS#12 files are missing validation wh... 問題摘要:PKCS#12 檔案中的 PBMAC1 參數缺少驗證 它可以觸... | 2026-01-27 |
| CVE-2025-15467 | 高 | 8.8 | Linux OS | Issue summary: Parsing CMS AuthEnvelopedData or EnvelopedData message with... 問題摘要:使用以下指令解析 CMS AuthEnvelopedData 或 Env... | 2026-01-27 |
| CVE-2025-15468 | 中 | 5.9 | Linux OS | Issue summary: If an application using the SSL_CIPHER_find() function in a... 問題摘要:如果應用程式使用 SSL_CIPHER_find() 函數 QUIC... | 2026-01-27 |
| CVE-2025-59095 | N/A | - | MSSQL | The program libraries (DLL) and binaries used by exos 9300 contain multiple... exos 9300 所使用的程式庫 (DLL) 和二進位檔案包含多個硬編... | 2026-01-26 |
| CVE-2025-59093 | N/A | - | MSSQL | Exos 9300 instances are using a randomly generated database password to con... Exos 9300 執行個體使用隨機產生的資料庫密碼連接到設定的... | 2026-01-26 |
| CVE-2026-22444 | 高 | 7.1 | Apache | The "create core" API of Apache Solr 8.6 through 9.10.0 lacks sufficient in... Apache Solr 8.6 到 9.10.0 的「建立核心」API 對某些 API... | 2026-01-21 |
| CVE-2026-22022 | 高 | 8.2 | Apache | Deployments of Apache Solr 5.3.0 through 9.10.0 that rely on Solr's "Rule B... 由於這些元件中的輸入驗證不夠嚴格,依賴 Solr 的「基於規... | 2026-01-21 |
| CVE-2026-21975 | 中 | 4.5 | Oracle | Vulnerability in the Java VM component of Oracle Database Server. Supporte... Oracle 資料庫伺服器的 Java VM 元件中的漏洞。 受影響的... | 2026-01-20 |
| CVE-2026-21968 | 中 | 6.5 | MySQL MSSQL Oracle | Vulnerability in the MySQL Server product of Oracle MySQL (component: Serve... Oracle MySQL 的 MySQL Server 產品(元件:伺服器:最佳化... | 2026-01-20 |
| CVE-2026-21965 | 低 | 2.7 | MySQL MSSQL Oracle | Vulnerability in the MySQL Server product of Oracle MySQL (component: Serve... Oracle MySQL 的 MySQL Server 產品(元件:Server:Plugga... | 2026-01-20 |
| CVE-2026-21964 | 中 | 4.9 | MySQL MSSQL Oracle | Vulnerability in the MySQL Server product of Oracle MySQL (component: Serve... Oracle MySQL 的 MySQL Server 產品(元件:伺服器:執行緒... | 2026-01-20 |
| CVE-2026-21962 | 嚴重 | 10 | Apache Oracle | Vulnerability in the Oracle HTTP Server, Oracle Weblogic Server Proxy Plug-... Oracle HTTP Server、Oracle Fusion Middleware 的 Oracle... | 2026-01-20 |
| CVE-2026-21952 | 中 | 4.9 | MySQL MSSQL Oracle | Vulnerability in the MySQL Server product of Oracle MySQL (component: Serve... Oracle MySQL 的 MySQL Server 產品(元件:伺服器:解析器... | 2026-01-20 |
| CVE-2026-21960 | 中 | 6.5 | Oracle | Vulnerability in the Oracle Applications DBA product of Oracle E-Business S... Oracle E-Business Suite(元件:Java utils)的 Oracle 應... | 2026-01-20 |
| CVE-2026-21950 | 中 | 6.5 | MySQL MSSQL Oracle | Vulnerability in the MySQL Server product of Oracle MySQL (component: Serve... Oracle MySQL 的 MySQL Server 產品(元件:伺服器:最佳化... | 2026-01-20 |
| CVE-2026-21949 | 中 | 6.5 | MySQL MSSQL Oracle | Vulnerability in the MySQL Server product of Oracle MySQL (component: Serve... Oracle MySQL 的 MySQL Server 產品(元件:伺服器:最佳化... | 2026-01-20 |
| CVE-2026-21948 | 中 | 4.9 | MySQL MSSQL Oracle | Vulnerability in the MySQL Server product of Oracle MySQL (component: Serve... Oracle MySQL 的 MySQL Server 產品(元件:伺服器:最佳化... | 2026-01-20 |
| CVE-2026-21945 | 高 | 7.5 | Oracle | Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM... Oracle Java SE、Oracle GraalVM for JDK、Oracle Java SE... | 2026-01-20 |
| CVE-2026-21947 | 低 | 3.1 | Oracle | Vulnerability in Oracle Java SE (component: JavaFX). Supported versions th... Oracle Java SE(元件:JavaFX)中的漏洞。 受影響的支援... | 2026-01-20 |
| CVE-2026-21941 | 中 | 4.9 | MySQL MSSQL Oracle | Vulnerability in the MySQL Server product of Oracle MySQL (component: Serve... Oracle MySQL 的 MySQL Server 產品(元件:伺服器:最佳化... | 2026-01-20 |
| CVE-2026-21937 | 中 | 4.9 | MySQL MSSQL Oracle | Vulnerability in the MySQL Server product of Oracle MySQL (component: Serve... Oracle MySQL 的 MySQL Server 產品(元件:伺服器:DDL)... | 2026-01-20 |
| CVE-2026-21936 | 中 | 4.9 | MySQL MSSQL Oracle | Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoD... Oracle MySQL(元件:InnoDB)的 MySQL Server 產品中存在... | 2026-01-20 |
| CVE-2026-21939 | 高 | 7 | Oracle | Vulnerability in the SQLcl component of Oracle Database Server. Supported... Oracle 資料庫伺服器的 SQLcl 元件中的漏洞。 受影響的受... | 2026-01-20 |
| CVE-2026-21929 | 中 | 5.3 | MySQL MSSQL Oracle | Vulnerability in the MySQL Server product of Oracle MySQL (component: Serve... Oracle MySQL 的 MySQL Server 產品(元件:伺服器:解析器... | 2026-01-20 |
| CVE-2026-21932 | 高 | 7.4 | Oracle | Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM... Oracle Java SE、Oracle GraalVM for JDK、Oracle Java SE... | 2026-01-20 |
| CVE-2026-21933 | 中 | 6.1 | Oracle | Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM... Oracle Java SE、Oracle GraalVM for JDK、Oracle Java SE... | 2026-01-20 |
| CVE-2026-21925 | 中 | 4.8 | Oracle | Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM... Oracle Java SE、Oracle GraalVM for JDK、Oracle Java SE... | 2026-01-20 |
| CVE-2025-59464 | 高 | 7.5 | Linux OS | A memory leak in Node.js’s OpenSSL integration occurs when converting `X.50... 將「X.509」憑證欄位轉換為 UTF-8 而不釋放分配的緩衝區時... | 2026-01-20 |
| CVE-2026-0908 | 高 | 8.8 | Chrome | Use after free in ANGLE in Google Chrome prior to 144.0.7559.59 allowed a r... 在 144.0.7559.59 之前的 Google Chrome 中使用 after free... | 2026-01-20 |
| CVE-2026-0907 | 嚴重 | 9.8 | Chrome | Incorrect security UI in Split View in Google Chrome prior to 144.0.7559.59... 144.0.7559.59 之前的 Google Chrome 中分割視圖中的安全 U... | 2026-01-20 |
| CVE-2026-0906 | 嚴重 | 9.8 | Chrome | Incorrect security UI in Google Chrome on Android prior to 144.0.7559.59 a... 144.0.7559.59 之前的 Android 版 Google Chrome 中不正確... | 2026-01-20 |
| CVE-2026-0905 | 嚴重 | 9.8 | Chrome | Insufficient policy enforcement in Network in Google Chrome prior to 144.0.... 144.0.7559.59 之前的 Google Chrome 網路中的策略執行不充... | 2026-01-20 |
| CVE-2026-0904 | 中 | 5.4 | Chrome | Incorrect security UI in Digital Credentials in Google Chrome prior to 144.... 144.0.7559.59 之前的 Google Chrome 中的數位憑證中的安全... | 2026-01-20 |
| CVE-2026-0903 | 中 | 5.4 | Chrome | Inappropriate implementation in Downloads in Google Chrome on Windows prior... 144.0.7559.59 之前的 Windows 上的 Google Chrome 下載中... | 2026-01-20 |
| CVE-2026-0902 | 高 | 8.8 | Chrome | Inappropriate implementation in V8 in Google Chrome prior to 144.0.7559.59... 144.0.7559.59 之前的 Google Chrome V8 中的不當實作允許... | 2026-01-20 |
| CVE-2026-0901 | 中 | 5.4 | Chrome | Inappropriate implementation in Blink in Google Chrome on Android prior to... 144.0.7559.59 之前的 Android 版 Google Chrome 中的 Blin... | 2026-01-20 |
| CVE-2026-0900 | 高 | 8.8 | Chrome | Inappropriate implementation in V8 in Google Chrome prior to 144.0.7559.59... 144.0.7559.59 之前的 Google Chrome 中的 V8 中的不當實作... | 2026-01-20 |
| CVE-2026-0899 | 高 | 8.8 | Chrome | Out of bounds memory access in V8 in Google Chrome prior to 144.0.7559.59 a... 144.0.7559.59 之前的 Google Chrome V8 中的越界記憶體存... | 2026-01-20 |
| CVE-2026-23837 | 嚴重 | 9.8 | Linux OS | MyTube is a self-hosted downloader and player for several video websites. A... MyTube 是多個影片網站的自架下載器和播放器。版本 1.7.65... | 2026-01-19 |
| CVE-2026-23838 | N/A | - | Linux OS | Tandoor Recipes is a recipe manager than can be installed with the Nix pack... Tandoor Recipes 是一個配方管理器,可與 Nix 套件管理器一... | 2026-01-19 |
| CVE-2025-29847 | 高 | 7.5 | Apache | A vulnerability in Apache Linkis. Problem Description When using the JDBC... Apache Linkis 中的漏洞。 問題描述 使用 JDBC 引擎和資料... | 2026-01-19 |
| CVE-2025-60021 | 嚴重 | 9.8 | Apache | Remote command injection vulnerability in heap profiler builtin service in... 所有平台上的 Apache bRPC((所有版本 < 1.15.0))中的堆... | 2026-01-16 |
| CVE-2026-22265 | 高 | 7.5 | Linux OS Apache | Roxy-WI is a web interface for managing Haproxy, Nginx, Apache and Keepaliv... Roxy-WI 是一個用於管理 Haproxy、Nginx、Apache 和 Keepal... | 2026-01-15 |
| CVE-2021-47761 | 高 | 7.8 | MySQL | MilleGPG5 5.7.2 contains a local privilege escalation vulnerability that al... MilleGPG5 5.7.2 包含本地權限提升漏洞,允許經過驗證的使... | 2026-01-15 |
| CVE-2025-68493 | 高 | 8.1 | Apache | Missing XML Validation vulnerability in Apache Struts, Apache Struts. This... Apache Struts 中缺少 XML 驗證漏洞,Apache Struts。 此... | 2026-01-11 |
| CVE-2026-22027 | 中 | 6 | MySQL | CryptoLib provides a software-only solution using the CCSDS Space Data Link... CryptoLib 使用 CCSDS 太空資料鏈路安全協定 - 擴充程式 (S... | 2026-01-10 |
| CVE-2025-12550 | 高 | 8.1 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... jwsthemes OchaHouse ochahouse 中 PHP 程式中 Include/Req... | 2026-01-08 |
| CVE-2025-12549 | 高 | 8.1 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... magentech Rozy - Flower Shop 中的 PHP 程式中的 Include/... | 2026-01-08 |
| CVE-2026-21875 | 嚴重 | 9.8 | PHP | ClipBucket v5 is an open source video sharing platform. Versions 5.5.2-#187... ClipBucket v5 是一個開源影片分享平台。 5.5.2-#187 及以... | 2026-01-08 |
| CVE-2026-21857 | 中 | 6.5 | PHP | REDAXO is a PHP-based content management system. Prior to version 5.20.2, a... REDAXO 是一個以 PHP 為基礎的內容管理系統。在版本 5.20.2... | 2026-01-07 |
| CVE-2026-21856 | 高 | 7.2 | MySQL | The Tarkov Data Manager is a tool to manage the Tarkov item data. Prior to... 塔科夫資料管理器是管理塔科夫物品資料的工具。在提交 9bdb... | 2026-01-07 |
| CVE-2026-0628 | 高 | 8.8 | Chrome | Insufficient policy enforcement in WebView tag in Google Chrome prior to 14... 143.0.7499.192 之前的 Google Chrome 中 WebView 標記中的... | 2026-01-07 |
| CVE-2025-69081 | 高 | 8.1 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... PHP 程式中包含/要求語句的檔案名稱控制不當(「PHP 遠端檔... | 2026-01-07 |
| CVE-2025-69080 | 高 | 8.1 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... JanStudio Gecko 中的 PHP 程式中包含/要求語句的檔案名稱... | 2026-01-07 |
| CVE-2025-14842 | 中 | 6.1 | PHP | The Drag and Drop Multiple File Upload – Contact Form 7 plugin for WordPres... WordPress 的拖放多個檔案上傳 – 聯絡表單 7 外掛程式在 1.... | 2026-01-07 |
| CVE-2025-14118 | 中 | 6.1 | PHP | The Starred Review plugin for WordPress is vulnerable to Reflected Cross-Si... 由于输入清理和输出转义不足,WordPress 的加星评论插件在... | 2026-01-07 |
| CVE-2025-32304 | 高 | 8.1 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... Mojoomla WPCHURCH 中的 PHP 程式中包含/要求語句的檔案名... | 2026-01-06 |
| CVE-2025-69356 | 高 | 7.5 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... CodexThemes 中的 PHP 程式中 Include/Require 語句的檔案... | 2026-01-06 |
| CVE-2025-69342 | 高 | 7.5 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... VanKarWai Calafate 中的 PHP 程式中包含/要求語句的檔案名... | 2026-01-06 |
| CVE-2025-69083 | 高 | 8.1 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... Elated-Themes Frappé frappe 中的 PHP 程式中包含/要求語... | 2026-01-06 |
| CVE-2025-69086 | 高 | 8.1 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... jwsthemes 中的 PHP 程式中 Include/Require 語句的檔案名... | 2026-01-06 |
| CVE-2020-36913 | 中 | 5.3 | PHP | All-Dynamics Software enlogic:show 2.0.2 contains a session fixation vulner... All-Dynamics Software enlogic:show 2.0.2 包含一個會話固... | 2026-01-06 |
| CVE-2025-69087 | 高 | 8.1 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... jwsthemes FreeAgent freeagent 中的 PHP 程式中 Include/R... | 2026-01-05 |
| CVE-2025-68759 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: wifi:... 在Linux核心中,以下漏洞已解決: wifi:rtl818x:修正 rt... | 2026-01-05 |
| CVE-2025-68760 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: iommu/... 在Linux核心中,以下漏洞已解決: iommu/amd:修正 iommu_... | 2026-01-05 |
| CVE-2025-68761 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: hfs: f... 在Linux核心中,以下漏洞已解決: hfs:修正 hfs_ Correct... | 2026-01-05 |
| CVE-2025-68762 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: n... 在Linux核心中,以下漏洞已解決: net:netpoll:在錯誤檢... | 2026-01-05 |
| CVE-2025-68765 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: mt76:... 在Linux核心中,以下漏洞已解決: mt76:mt7615:修正 mt7... | 2026-01-05 |
| CVE-2025-68764 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: NFS: A... 在Linux核心中,以下漏洞已解決: NFS:自動掛載的檔案系... | 2026-01-05 |
| CVE-2025-68763 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: crypto... 在Linux核心中,以下漏洞已解決: crypto: star Five - 正... | 2026-01-05 |
| CVE-2025-68751 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: s390/f... 在Linux核心中,以下漏洞已解決: s390/fpu:修正 fpu_vst... | 2026-01-05 |
| CVE-2025-68752 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: iavf:... 在Linux核心中,以下漏洞已解決: iavf:使用 -EOPNOTSUPP... | 2026-01-05 |
| CVE-2025-68753 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ALSA:... 在Linux核心中,以下漏洞已解決: ALSA:firewire-motu:... | 2026-01-05 |
| CVE-2025-68754 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: rtc: a... 在Linux核心中,以下漏洞已解決: rtc:amlogic-a4:修復... | 2026-01-05 |
| CVE-2025-68755 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: stagin... 在Linux核心中,以下漏洞已解決: 分期:大多數:刪除損壞... | 2026-01-05 |
| CVE-2025-68756 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: block:... 在Linux核心中,以下漏洞已解決: block:在 blk_mq_[un]q... | 2026-01-05 |
| CVE-2025-68757 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: drm/vg... 在Linux核心中,以下漏洞已解決: drm/vgem-fence:修復發... | 2026-01-05 |
| CVE-2025-68758 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: backli... 在Linux核心中,以下漏洞已解決: 背光:led-bl:將 devli... | 2026-01-05 |
| CVE-2026-21444 | 中 | 5.5 | Linux OS | libtpms, a library that provides software emulation of a Trusted Platform M... libtpms 是一個提供可信任平台模組軟體模擬的函式庫,在版... | 2026-01-02 |
| CVE-2026-0547 | 中 | 6.3 | PHP | A vulnerability was found in PHPGurukul Online Course Registration up to 3.... PHPGurukul 線上課程註冊(最高 3.1)發現漏洞。此問題影響... | 2026-01-02 |
| CVE-2025-15406 | 中 | 6.3 | PHP | A flaw has been found in PHPGurukul Online Course Registration up to 3.1. T... PHPGurukul 線上課程已註冊至 3.1 版本發現了一個缺陷。這... | 2026-01-01 |
| CVE-2025-15405 | 中 | 4.3 | PHP | A vulnerability was detected in PHPEMS up to 11.0. The impacted element is... PHPEMS 11.0 版本中偵測到漏洞。受影響的元素是未知函數。... | 2026-01-01 |
| CVE-2025-15390 | 中 | 6.3 | PHP | A security flaw has been discovered in PHPGurukul Small CRM 4.0. This impac... PHPGurukul Small CRM 4.0 中發現了一個安全漏洞。這會影響... | 2025-12-31 |
| CVE-2025-62753 | 高 | 7.5 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... MadrasThemes MAS Videos masvideos 中 PHP 程式中包含/要... | 2025-12-30 |
| CVE-2025-15263 | 高 | 7.3 | PHP | A weakness has been identified in BiggiDroid Simple PHP CMS 1.0. Affected i... BiggiDroid Simple PHP CMS 1.0 中已發現一個弱點。受影響... | 2025-12-30 |
| CVE-2025-15262 | 中 | 4.7 | PHP | A security flaw has been discovered in BiggiDroid Simple PHP CMS 1.0. This... BiggiDroid Simple PHP CMS 1.0 中發現了一個安全漏洞。這... | 2025-12-30 |
| CVE-2025-67746 | 中 | 4.3 | PHP | Composer is a dependency manager for PHP. In versions on the 2.x branch pri... Composer 是 PHP 的依賴管理器。在 2.2.26 和 2.9.3 之前的... | 2025-12-30 |
| CVE-2023-54317 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: dm fla... 在Linux核心中,以下漏洞已解決: dm flkey:不要損壞零頁... | 2025-12-30 |
| CVE-2023-54271 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: blk-cg... 在Linux核心中,以下漏洞已解決: blk-cgroup:修復由於在... | 2025-12-30 |
| CVE-2022-50819 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: udmabu... 在Linux核心中,以下漏洞已解決: udmabuf:如果sg表建立... | 2025-12-30 |
| CVE-2022-50818 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: scsi:... 在Linux核心中,以下漏洞已解決: scsi:pm8001:修正內部... | 2025-12-30 |
| CVE-2022-50817 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: h... 在Linux核心中,以下漏洞已解決: net: hsr: 避免 skb_clo... | 2025-12-30 |
| CVE-2022-50816 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ipv6:... 在Linux核心中,以下漏洞已解決: ipv6:確保隧道中的設備... | 2025-12-30 |
| CVE-2022-50815 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ext2:... 在Linux核心中,以下漏洞已解決: ext2:新增群組和檔案系... | 2025-12-30 |
| CVE-2022-50814 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: crypto... 在Linux核心中,以下漏洞已解決: crypto: hisilicon/zip... | 2025-12-30 |
| CVE-2022-50813 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: driver... 在Linux核心中,以下漏洞已解決: 驅動程式:mcb:修復 mc... | 2025-12-30 |
| CVE-2022-50812 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: securi... 在Linux核心中,以下漏洞已解決: 安全性:將 CONFIG_ZERO... | 2025-12-30 |
| CVE-2022-50811 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: erofs:... 在Linux核心中,以下漏洞已解決: erofs:修正 z_erofs_ge... | 2025-12-30 |
| CVE-2022-50810 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: rapidi... 在Linux核心中,以下漏洞已解決: rapidio:裝置:修正 mp... | 2025-12-30 |
| CVE-2022-50809 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: xhci:... 在Linux核心中,以下漏洞已解決: xhci: dbc: 修復 xhci_a... | 2025-12-30 |
| CVE-2025-14509 | 高 | 7.2 | PHP | The Lucky Wheel for WooCommerce – Spin a Sale plugin for WordPress is vulne... WooCommerce 的幸運輪 – WordPress 的 Spin a Sale 外掛程... | 2025-12-30 |
| CVE-2023-54162 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ksmbd:... 在Linux核心中,以下漏洞已解決: ksmbd:修復 smb2_lock(... | 2025-12-30 |
| CVE-2022-50786 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: media:... 在Linux核心中,以下漏洞已解決: 媒體:s5p-mfc:清除工... | 2025-12-30 |
| CVE-2022-50785 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: fsi: o... 在Linux核心中,以下漏洞已解決: fsi:occ:釋放後防止使... | 2025-12-30 |
| CVE-2022-50784 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: wifi:... 在Linux核心中,以下漏洞已解決: wifi: iwlwifi: mei: 修... | 2025-12-30 |
| CVE-2025-69034 | 高 | 8.1 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... Mikado-Themes 中的 PHP 程式中包含/要求語句的檔案名稱控... | 2025-12-30 |
| CVE-2025-68996 | 高 | 7.5 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... WebCodingPlace Responsive Posts Carousel Pro 響應式貼文... | 2025-12-30 |
| CVE-2025-68985 | 高 | 7.5 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... PHP 程式中的 Include/Require 語句的檔案名稱控制不當(「... | 2025-12-30 |
| CVE-2025-68984 | 高 | 7.5 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... PHP 程式中包含/要求語句的檔案名稱控制不當(「PHP 遠端檔... | 2025-12-30 |
| CVE-2025-68987 | 高 | 7.5 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... Edge-Themes Cinerama 中的 PHP 程式中包含/要求語句的檔案... | 2025-12-30 |
| CVE-2025-68983 | 高 | 7.5 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... 對 PHP 程式中包含/要求語句的檔案名稱控制不當(「PHP 遠... | 2025-12-30 |
| CVE-2025-68974 | 中 | 6.6 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... miniOrange WordPress 社群登入和註冊中的 PHP 程式中包含/... | 2025-12-30 |
| CVE-2025-15244 | 低 | 3.7 | PHP | A vulnerability has been found in PHPEMS up to 11.0. This impacts an unknow... PHPEMS 至 11.0 版本中已發現漏洞。這會影響元件購買請求處... | 2025-12-30 |
| CVE-2025-15242 | 低 | 3.1 | PHP | A vulnerability was detected in PHPEMS up to 11.0. The impacted element is... PHPEMS 11.0 版本中偵測到漏洞。受影響的元素是組件優惠券... | 2025-12-30 |
| CVE-2025-69217 | 高 | 7.7 | Linux OS | coturn is a free open source implementation of TURN and STUN Server. Versio... coturn 是 TURN 和 STUN 伺服器的免費開源實作。版本 4.6.2... | 2025-12-30 |
| CVE-2025-68870 | 高 | 7.5 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... reDim GmbH CookieHint WP cookiehint-wp 中 PHP 程式中包... | 2025-12-29 |
| CVE-2025-69200 | 高 | 7.5 | PHP | phpMyFAQ is an open source FAQ web application. In versions prior to 4.0.16... phpMyFAQ 是一個開源常見問題解答 Web 應用程式。在 4.0.16... | 2025-12-29 |
| CVE-2025-68951 | 中 | 5.4 | PHP | phpMyFAQ is an open source FAQ web application. Versions 4.0.14 and 4.0.15... phpMyFAQ 是一個開源常見問題解答 Web 應用程式。版本 4.0.... | 2025-12-29 |
| CVE-2025-68877 | 高 | 7.5 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... cedcommerce 中 PHP 程式中包含/要求語句的檔案名稱控制不... | 2025-12-29 |
| CVE-2025-15169 | 中 | 4.7 | PHP | A weakness has been identified in BiggiDroid Simple PHP CMS 1.0. Affected b... BiggiDroid Simple PHP CMS 1.0 中已發現一個弱點。受此問... | 2025-12-29 |
| CVE-2025-15142 | 高 | 7.3 | PHP | A vulnerability was identified in 9786 phpok3w up to 901d96a06809fb28b17f3a... 在 9786 phpok3w 至 901d96a06809fb28b17f3a4362c59e70411c... | 2025-12-28 |
| CVE-2025-14178 | 中 | 6.5 | PHP | In PHP versions:8.1.* before 8.1.34, 8.2.* before 8.2.30, 8.3.* before 8.3.... 在 PHP 版本中:8.1.34 之前的 8.1.*、8.2.30 之前的 8.2.*... | 2025-12-27 |
| CVE-2025-14177 | 高 | 7.5 | PHP | In PHP versions:8.1.* before 8.1.34, 8.2.* before 8.2.30, 8.3.* before 8.3.... 在 PHP 版本中:8.1.34 之前的 8.1.*、8.2.30 之前的 8.2.*... | 2025-12-27 |
| CVE-2025-14180 | 高 | 7.5 | PHP | In PHP versions 8.1.* before 8.1.34, 8.2.* before 8.2.30, 8.3.* before 8.3.... 在 8.1.34 之前的 PHP 版本 8.1.*、8.2.30 之前的 8.2.*、8... | 2025-12-27 |
| CVE-2025-2515 | 高 | 7.2 | Linux OS | A vulnerability was found in BlueChi, a multi-node systemd service controll... RHIVOS 中使用的多節點 systemd 服務控制器 BlueChi 中發現... | 2025-12-24 |
| CVE-2025-68563 | 嚴重 | 9.8 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... PHP 程式中包含/要求語句的檔案名稱控制不當(「PHP 遠端檔... | 2025-12-24 |
| CVE-2025-68540 | 嚴重 | 9.8 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... PHP 程式中包含/要求語句的檔案名稱控制不當(「PHP 遠端檔... | 2025-12-24 |
| CVE-2025-68537 | 嚴重 | 9.8 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... PHP 程式中包含/要求語句的檔案名稱控制不當(「PHP 遠端檔... | 2025-12-24 |
| CVE-2025-68530 | 嚴重 | 9.8 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... PHP 程式中包含/要求語句的檔案名稱控制不當(「PHP 遠端檔... | 2025-12-24 |
| CVE-2025-68506 | 嚴重 | 9.8 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... 對 PHP 程式中的 Include/Require 語句的檔案名稱控制不當... | 2025-12-24 |
| CVE-2023-54126 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: crypto... 在Linux核心中,以下漏洞已解決: crypto: safexcel - 載... | 2025-12-24 |
| CVE-2023-54006 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: af_uni... 在Linux核心中,以下漏洞已解決: af_unix:修正 unix_tot... | 2025-12-24 |
| CVE-2022-50711 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: e... 在Linux核心中,以下漏洞已解決: net: ethernet: mtk_eth... | 2025-12-24 |
| CVE-2022-50710 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ice: s... 在Linux核心中,以下漏洞已解決: ice: set tx_tstamps wh... | 2025-12-24 |
| CVE-2022-50709 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: wifi:... 在Linux核心中,以下漏洞已解決: wifi: ath9k: avoid uni... | 2025-12-24 |
| CVE-2022-50708 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: HSI: s... 在Linux核心中,以下漏洞已解決: HSI: ssi_protocol: fix... | 2025-12-24 |
| CVE-2022-50707 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: virtio... 在Linux核心中,以下漏洞已解決: virtio-crypto: fix mem... | 2025-12-24 |
| CVE-2022-50706 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net/ie... 在Linux核心中,以下漏洞已解決: net/ieee802154:不要警... | 2025-12-24 |
| CVE-2022-50703 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: soc: q... 在Linux核心中,以下漏洞已解決: soc: qcom: smsm:修正... | 2025-12-24 |
| CVE-2022-50705 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: io_uri... 在Linux核心中,以下漏洞已解決: io_uring/rw:推遲對任... | 2025-12-24 |
| CVE-2022-50704 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: USB: g... 在Linux核心中,以下漏洞已解決: USB:小工具:修正 USB... | 2025-12-24 |
| CVE-2022-50702 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: vdpa_s... 在Linux核心中,以下漏洞已解決: vdpa_sim:修正 vdpasim... | 2025-12-24 |
| CVE-2022-50701 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: wifi:... 在Linux核心中,以下漏洞已解決: wifi: mt76: mt7921s:... | 2025-12-24 |
| CVE-2022-50700 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: wifi:... 在Linux核心中,以下漏洞已解決: wifi: ath10k:延遲緩衝... | 2025-12-24 |
| CVE-2022-50699 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: selinu... 在Linux核心中,以下漏洞已解決: selinux:在convert_con... | 2025-12-24 |
| CVE-2022-50698 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ASoC:... 在Linux核心中,以下漏洞已解決: ASoC:da7219:修正 da7... | 2025-12-24 |
| CVE-2022-50697 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: mrp: i... 在Linux核心中,以下漏洞已解決: mrp:當申請人 uninit... | 2025-12-24 |
| CVE-2025-13407 | 中 | 6.8 | PHP | The Gravity Forms WordPress plugin before 2.9.23.1 does not properly preven... 2.9.23.1之前的Gravity Forms WordPress外掛無法正確阻止用... | 2025-12-24 |
| CVE-2025-13773 | 嚴重 | 9.8 | PHP | The Print Invoice & Delivery Notes for WooCommerce plugin for WordPress is... WordPress 的 WooCommerce 外掛程式的列印發票和送貨單在 5... | 2025-12-24 |
| CVE-2025-14406 | 高 | 7.8 | Linux OS | Soda PDF Desktop Uncontrolled Search Path Element Local Privilege Escalatio... Soda PDF 桌面不受控制的搜尋路徑元素本機權限升級漏洞。此... | 2025-12-23 |
| CVE-2025-14405 | 中 | 6.8 | Linux OS | PDFsam Enhanced Uncontrolled Search Path Element Local Privilege Escalation... PDFsam 增強不受控制的搜尋路徑元素本機權限升級漏洞。此漏... | 2025-12-23 |
| CVE-2021-47736 | 高 | 7.2 | PHP | CMSimple_XH 1.7.4 contains an authenticated remote code execution vulnerabi... CMSimple_XH 1.7.4 在內容編輯功能中包含一個經過驗證的遠... | 2025-12-23 |
| CVE-2021-47735 | 高 | 8.8 | PHP | CMSimple 5.4 contains an authenticated remote code execution vulnerability... CMSimple 5.4 包含一個經過驗證的遠端程式碼執行漏洞,允許... | 2025-12-23 |
| CVE-2021-47734 | 高 | 7.8 | PHP | CMSimple 5.4 contains an authenticated local file inclusion vulnerability t... CMSimple 5.4 包含一個經過驗證的本機檔案包含漏洞,允許遠... | 2025-12-23 |
| CVE-2025-68341 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: veth:... 在Linux核心中,以下漏洞已解決: veth:減少 XDP no_dire... | 2025-12-23 |
| CVE-2025-68343 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: can: g... 在Linux核心中,以下漏洞已解決: 可以:gs_usb:gs_usb_r... | 2025-12-23 |
| CVE-2025-68342 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: can: g... 在Linux核心中,以下漏洞已解決: 可以:gs_usb:gs_usb_r... | 2025-12-23 |
| CVE-2025-68338 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: d... 在Linux核心中,以下漏洞已解決: net: dsa: microchip:... | 2025-12-23 |
| CVE-2025-68339 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: atm/fo... 在Linux核心中,以下漏洞已解決: atm/fore200e:修正 for... | 2025-12-23 |
| CVE-2025-68340 | 中 | 5.5 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: team:... 在Linux核心中,以下漏洞已解決: team:將團隊裝置類型變... | 2025-12-23 |
| CVE-2025-68560 | N/A | - | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... CodexThemes TheGem 主題元素(適用於 Elementor)thegem-e... | 2025-12-23 |
| CVE-2025-68546 | N/A | - | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... PHP 程式中的 Include/Require 語句的檔案名稱控制不當(「... | 2025-12-23 |
| CVE-2025-68544 | N/A | - | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... PHP 程式中包含/要求語句的檔案名稱控制不當(「PHP 遠端檔... | 2025-12-23 |
| CVE 編號 | 嚴重性 | 分數 | 產品 | 描述 | 發布日期 |
|---|---|---|---|---|---|
| CVE-2026-43501 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ipv6:... 在Linux核心中,以下漏洞已解決: ipv6: rpl: 當重新壓縮... | 2026-05-21 |
| CVE-2026-43499 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: rtmute... 在Linux核心中,以下漏洞已解決: rtmutex:在remove_wait... | 2026-05-21 |
| CVE-2026-43498 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: accel/... 在Linux核心中,以下漏洞已解決: Accel/ivpu:禁止重新匯... | 2026-05-21 |
| CVE-2026-43497 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: fbdev:... 在Linux核心中,以下漏洞已解決: fbdev: udlfb: 將 vm_op... | 2026-05-21 |
| CVE-2026-43502 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net/rd... 在Linux核心中,以下漏洞已解決: net/rds:在訊息排隊之... | 2026-05-21 |
| CVE-2026-43495 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: w... 在Linux核心中,以下漏洞已解決: net: wwan: t7xx:根據... | 2026-05-21 |
| CVE-2026-43496 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net/sc... 在Linux核心中,以下漏洞已解決: net/sched: sch_red:用... | 2026-05-21 |
| CVE-2026-43494 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net/rd... 在Linux核心中,以下漏洞已解決: net/rds:當zerocopy頁... | 2026-05-21 |
| CVE-2026-8711 | 高 | 8.1 | Linux OS | NGINX JavaScript has a vulnerability when the js_fetch_proxy directive is c... 當 js_fetch_proxy 指令配置了至少一個客戶端控制的 NGINX... | 2026-05-19 |
| CVE-2025-14575 | N/A | - | Linux OS | An Uncontrolled Search Path Element vulnerability in the OpenSSL TLS backen... Qt Qt Framework (Unix) 中 Qt Network (qtbase) 的 OpenSS... | 2026-05-19 |
| CVE-2026-43493 | 嚴重 | 9.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: crypto... 在Linux核心中,以下漏洞已解決: crypto: pcrypt - 修正... | 2026-05-19 |
| CVE-2026-43492 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: lib/cr... 在Linux核心中,以下漏洞已解決: lib/crypto: mpi: 修正... | 2026-05-19 |
| CVE-2026-43491 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: q... 在Linux核心中,以下漏洞已解決: net: qrtr: ns:限制每... | 2026-05-19 |
| CVE-2026-8721 | 嚴重 | 9.8 | Linux OS | Crypt::OpenSSL::PKCS12 versions through 1.94 for Perl truncates passwords w... Perl 的 Crypt::OpenSSL::PKCS12 版本到 1.94 會截斷帶有嵌... | 2026-05-17 |
| CVE-2026-44699 | N/A | - | Linux OS | LibJWT is a C JSON Web Token Library. From 3.0.0 to 3.3.2, libjwt accepts a... LibJWT 是一個 C JSON Web 令牌庫。從 3.0.0 到 3.3.2,lib... | 2026-05-15 |
| CVE-2026-46333 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ptrace... 在Linux核心中,以下漏洞已解決: ptrace:稍微理智的「ge... | 2026-05-15 |
| CVE-2026-43490 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ksmbd:... 在Linux核心中,以下漏洞已解決: ksmbd:驗證繼承的 ACE... | 2026-05-15 |
| CVE-2026-7373 | N/A | - | Linux OS | Rapid7 Metasploit Pro is vulnerable to a local privilege escalation attack... Rapid7 Metasploit Pro 容易受到本機權限提升攻擊,該攻擊... | 2026-05-15 |
| CVE-2026-44662 | N/A | - | Linux OS | rust-openssl provides OpenSSL bindings for the Rust programming language. F... rust-openssl 為 Rust 程式語言提供 OpenSSL 綁定。從 0.10... | 2026-05-14 |
| CVE-2026-42327 | N/A | - | Linux OS | rust-openssl provides OpenSSL bindings for the Rust programming language. F... rust-openssl 為 Rust 程式語言提供 OpenSSL 綁定。從 0.9.... | 2026-05-14 |
| CVE-2026-46356 | N/A | - | Linux OS | Fleet is open source device management software. Prior to version 4.80.1, a... Fleet 是開源裝置管理軟體。在版本 4.80.1 之前,Fleet 的... | 2026-05-14 |
| CVE-2026-44312 | 中 | 5.8 | Linux OS | css_parser is a Ruby CSS parser. Prior to 2.1.0 and 1.22.0, the CSS Parser... css_parser 是一個 Ruby CSS 解析器。在 2.1.0 和 1.22.0... | 2026-05-14 |
| CVE-2025-62628 | N/A | - | Linux OS | Unsafe OpenSSL initialization within some AMD optional tools may allow a lo... 某些 AMD 選用工具中不安全的 OpenSSL 初始化可能允許本機... | 2026-05-14 |
| CVE-2026-43489 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: liveup... 在Linux核心中,以下漏洞已解決: liveupdate: luo_file:... | 2026-05-13 |
| CVE-2026-43488 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: usb: x... 在Linux核心中,以下漏洞已解決: USB:xhci:防止主機控... | 2026-05-13 |
| CVE-2026-43487 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ata: l... 在Linux核心中,以下漏洞已解決: ata:libata-core:在 S... | 2026-05-13 |
| CVE-2026-43486 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: arm64:... 在Linux核心中,以下漏洞已解決: arm64:contpte:修正 s... | 2026-05-13 |
| CVE-2026-43485 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: nouvea... 在Linux核心中,以下漏洞已解決: nouveau/gsp:在 ACPI... | 2026-05-13 |
| CVE-2026-43484 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: mmc: c... 在Linux核心中,以下漏洞已解決: mmc:核心:避免使用位... | 2026-05-13 |
| CVE-2026-43483 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: KVM: S... 在Linux核心中,以下漏洞已解決: KVM:SVM:當 AVIC 啟動... | 2026-05-13 |
| CVE-2026-43482 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: sched_... 在Linux核心中,以下漏洞已解決: sched_ext:停用 scx_cl... | 2026-05-13 |
| CVE-2026-43481 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net-sh... 在Linux核心中,以下漏洞已解決: net-shapers:在 genlms... | 2026-05-13 |
| CVE-2026-43480 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ASoC:... 在Linux核心中,以下漏洞已解決: ASoC:amd:acp3x-rt568... | 2026-05-13 |
| CVE-2026-43479 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: u... 在Linux核心中,以下漏洞已解決: net: usb: lan78xx:修... | 2026-05-13 |
| CVE-2026-43478 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ASoC:... 在Linux核心中,以下漏洞已解決: ASoC:編解碼器:rt1011... | 2026-05-13 |
| CVE-2026-43477 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: drm/i9... 在Linux核心中,以下漏洞已解決: drm/i915/vrr:啟用 TRA... | 2026-05-13 |
| CVE-2026-43476 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: iio: c... 在Linux核心中,以下漏洞已解決: iio:化學:sps30_i2c:... | 2026-05-13 |
| CVE-2026-42946 | 中 | 6.5 | Linux OS | A vulnerability exists in the ngx_http_scgi_module and ngx_http_uwsgi_modul... ngx_http_scgi_module 和 ngx_http_uwsgi_module 模組中存... | 2026-05-13 |
| CVE-2026-42945 | 高 | 8.1 | Linux OS | NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_rewri... NGINX Plus 和 NGINX Open Source 在 ngx_http_rewrite_mod... | 2026-05-13 |
| CVE-2026-42934 | 中 | 4.8 | Linux OS | NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_chars... NGINX Plus 和 NGINX Open Source 在 ngx_http_charset_mod... | 2026-05-13 |
| CVE-2026-42926 | 中 | 5.8 | Linux OS | When NGINX Open Source is configured to proxy HTTP/2 traffic by setting pro... 當 NGINX 開源配置為透過將 proxy_http_version 設定為 2... | 2026-05-13 |
| CVE-2026-40701 | 中 | 4.8 | Linux OS | NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_ssl_m... 當 ssl_verify_client 指令設定為“on”或“可選”,並且 ssl_o... | 2026-05-13 |
| CVE-2026-40460 | 中 | 6.5 | Linux OS | When NGINX Plus or NGINX Open Source are configured to use the HTTP/3 QUIC ... 當 NGINX Plus 或 NGINX Open Source 配置為使用 HTTP/3 QU... | 2026-05-13 |
| CVE-2026-39806 | N/A | - | Linux OS | Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in mtr... mtrudel bandit 中存在無法到達退出條件的循環(「無限循環... | 2026-05-13 |
| CVE-2026-44015 | 高 | 8.5 | Linux OS | Nginx UI is a web user interface for the Nginx web server. In 2.3.4 and ear... Nginx UI 是 Nginx Web 伺服器的 Web 使用者介面。在 2.3.4... | 2026-05-12 |
| CVE-2026-42268 | 高 | 7.5 | Linux OS Apache | ModSecurity is an open source, cross platform web application firewall (WAF... ModSecurity 是一個適用於 Apache、IIS 和 Nginx 的開源跨... | 2026-05-12 |
| CVE-2026-8430 | 高 | 8.1 | Linux OS | SPIP versions prior to 4.4.14 contain a remote code execution vulnerability... 4.4.14 之前的 SPIP 版本包含公共空間中的遠端程式碼執行漏... | 2026-05-12 |
| CVE-2025-27723 | N/A | - | Linux OS | Use after free for some Linux kernel driver for the Intel(R) Ethernet 800 s... 在 Ring 0 內使用版本 2.3.14 之前的 Intel(R) 乙太網路 80... | 2026-05-12 |
| CVE-2026-41489 | 高 | 8.8 | Linux OS | Pi-hole is a DNS sinkhole that protects devices from unwanted content witho... Pi-hole 是一個 DNS 污水坑,可保護設備免受不必要的內容的... | 2026-05-11 |
| CVE-2026-43294 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: drm: r... 在Linux核心中,以下漏洞已解決: drm:renesas:rz-du:m... | 2026-05-08 |
| CVE-2026-40004 | 中 | 5.5 | Linux OS | There exists an openssl.cnf privilege escalation vulnerability in ZTE Cloud... 中興雲PC客戶端uSmartview存在openssl.cnf提權漏洞。攻擊者... | 2026-05-07 |
| CVE-2026-43258 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: alpha:... 在Linux核心中,以下漏洞已解決: alpha:修復記憶體壓縮... | 2026-05-06 |
| CVE-2026-30923 | 高 | 7.5 | Linux OS Apache | ModSecurity is an open source, cross platform web application firewall (WAF... ModSecurity 是一個適用於 Apache、IIS 和 Nginx 的開源跨... | 2026-05-05 |
| CVE-2026-42238 | 嚴重 | 9.8 | Linux OS | Nginx UI is a web user interface for the Nginx web server. Prior to version... Nginx UI 是 Nginx Web 伺服器的 Web 使用者介面。在版本 2... | 2026-05-04 |
| CVE-2026-42223 | 中 | 6.5 | Linux OS | Nginx UI is a web user interface for the Nginx web server. Prior to version... Nginx UI 是 Nginx Web 伺服器的 Web 使用者介面。在版本 2... | 2026-05-04 |
| CVE-2026-42222 | 高 | 8.1 | Linux OS | Nginx UI is a web user interface for the Nginx web server. In version 2.3.5... Nginx UI 是 Nginx Web 伺服器的 Web 使用者介面。在版本 2... | 2026-05-04 |
| CVE-2026-42221 | 高 | 8.1 | Linux OS | Nginx UI is a web user interface for the Nginx web server. From version 2.0... Nginx UI 是 Nginx Web 伺服器的 Web 使用者介面。從版本 2... | 2026-05-04 |
| CVE-2026-42220 | 中 | 6.5 | Linux OS | Nginx UI is a web user interface for the Nginx web server. Prior to version... Nginx UI 是 Nginx Web 伺服器的 Web 使用者介面。在版本 2... | 2026-05-04 |
| CVE-2026-43058 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: media:... 在Linux核心中,以下漏洞已解決: 媒體:vidtv:修正導致... | 2026-05-02 |
| CVE-2026-37554 | 高 | 7.5 | Linux OS | An issue was discovered in Vanetza V2X v26.02 allowing remote unauthorized... Vanetza V2X v26.02 中發現了一個問題,讓遠端未經授權的攻... | 2026-05-01 |
| CVE-2026-43057 | 高 | 7.5 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: c... 在Linux核心中,以下漏洞已解決: net:正確處理 IPV6_CSU... | 2026-05-01 |
| CVE-2026-43056 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: m... 在Linux核心中,以下漏洞已解決: net: mana: 修正 add_ad... | 2026-05-01 |
| CVE-2026-43055 | 高 | 7.5 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: scsi:... 在Linux核心中,以下漏洞已解決: scsi: 目標: 檔案: 對 a... | 2026-05-01 |
| CVE-2026-43053 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: xfs: c... 在Linux核心中,以下漏洞已解決: xfs:關閉 attr dabtree... | 2026-05-01 |
| CVE-2026-43047 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: HID: m... 在Linux核心中,以下漏洞已解決: HID:多點觸控:檢查以... | 2026-05-01 |
| CVE-2026-43048 | 高 | 8.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: HID: c... 在Linux核心中,以下漏洞已解決: HID:核心:透過刪除偽... | 2026-05-01 |
| CVE-2026-43049 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: HID: l... 在Linux核心中,以下漏洞已解決: HID:logitech-hidpp:... | 2026-05-01 |
| CVE-2026-43050 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: atm: l... 在Linux核心中,以下漏洞已解決: atm:lec:修正 sock_de... | 2026-05-01 |
| CVE-2026-43051 | 高 | 8.1 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: HID: w... 在Linux核心中,以下漏洞已解決: HID:wacom:修正 wacom... | 2026-05-01 |
| CVE-2026-43052 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: wifi:... 在Linux核心中,以下漏洞已解決: wifi:mac80211:檢查 i... | 2026-05-01 |
| CVE-2026-43054 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: scsi:... 在Linux核心中,以下漏洞已解決: scsi:目標:tcm_loop:... | 2026-05-01 |
| CVE-2026-43040 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: i... 在Linux核心中,以下漏洞已解決: net: ipv6: ndisc:修正... | 2026-05-01 |
| CVE-2026-43046 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: btrfs:... 在Linux核心中,以下漏洞已解決: btrfs:拒絕 drop_progr... | 2026-05-01 |
| CVE-2026-43045 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: mshv:... 在Linux核心中,以下漏洞已解決: mshv:修正 mshv_region... | 2026-05-01 |
| CVE-2026-43044 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: crypto... 在Linux核心中,以下漏洞已解決: crypto: caam - 修復長... | 2026-05-01 |
| CVE-2026-43043 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: crypto... 在Linux核心中,以下漏洞已解決: crypto: af-alg - 修正... | 2026-05-01 |
| CVE-2026-43042 | 高 | 7.1 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: mpls:... 在Linux核心中,以下漏洞已解決: mpls:新增 seqcount 以... | 2026-05-01 |
| CVE-2026-43041 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: q... 在Linux核心中,以下漏洞已解決: net: qrtr:用 xarray... | 2026-05-01 |
| CVE-2026-43039 | 嚴重 | 9.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: t... 在Linux核心中,以下漏洞已解決: net: ti: icssg-prueth... | 2026-05-01 |
| CVE-2026-43038 | 嚴重 | 9.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ipv6:... 在Linux核心中,以下漏洞已解決: ipv6: icmp: 清除 ip6_e... | 2026-05-01 |
| CVE-2026-43037 | 嚴重 | 9.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ip6_tu... 在Linux核心中,以下漏洞已解決: ip6_tunnel:清除 ip4ip... | 2026-05-01 |
| CVE-2026-43036 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: u... 在Linux核心中,以下漏洞已解決: net:使用 skb_header_p... | 2026-05-01 |
| CVE-2026-43035 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: s... 在Linux核心中,以下漏洞已解決: net: sched: cls_api:... | 2026-05-01 |
| CVE-2026-43034 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: bnxt_e... 在Linux核心中,以下漏洞已解決: bnxt_en:從查詢類型設... | 2026-05-01 |
| CVE-2026-43028 | 高 | 7.1 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: netfil... 在Linux核心中,以下漏洞已解決: netfilter: x_tables:... | 2026-05-01 |
| CVE-2026-43026 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: netfil... 在Linux核心中,以下漏洞已解決: netfilter:ctnetlink:... | 2026-05-01 |
| CVE-2026-43027 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: netfil... 在Linux核心中,以下漏洞已解決: netfilter:nf_conntrac... | 2026-05-01 |
| CVE-2026-43029 | 高 | 7.5 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: mptcp:... 在Linux核心中,以下漏洞已解決: mptcp:修復 mptcp_recv... | 2026-05-01 |
| CVE-2026-43030 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: bpf: F... 在Linux核心中,以下漏洞已解決: bpf:修正 regsafe() 以... | 2026-05-01 |
| CVE-2026-43031 | 高 | 7.5 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: x... 在Linux核心中,以下漏洞已解決: net: xilinx: axienet:... | 2026-05-01 |
| CVE-2026-43032 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: NFC: p... 在Linux核心中,以下漏洞已解決: NFC:pn533:綁定UART接... | 2026-05-01 |
| CVE-2026-43033 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: crypto... 在Linux核心中,以下漏洞已解決: crypto: authencesn -... | 2026-05-01 |
| CVE-2026-43025 | 高 | 7.3 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: netfil... 在Linux核心中,以下漏洞已解決: netfilter:ctnetlink:... | 2026-05-01 |
| CVE-2026-43024 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: netfil... 在Linux核心中,以下漏洞已解決: netfilter: nf_tables:... | 2026-05-01 |
| CVE-2026-43023 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: Blueto... 在Linux核心中,以下漏洞已解決: 藍牙:SCO:修復 sco_so... | 2026-05-01 |
| CVE-2026-43022 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: Blueto... 在Linux核心中,以下漏洞已解決: 藍牙:hci_sync:hci_cm... | 2026-05-01 |
| CVE-2026-43021 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: Blueto... 在Linux核心中,以下漏洞已解決: 藍牙:hci_sync:修正 h... | 2026-05-01 |
| CVE-2026-43020 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: Blueto... 在Linux核心中,以下漏洞已解決: 藍牙:MGMT:載入時驗證... | 2026-05-01 |
| CVE-2026-43019 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: Blueto... 在Linux核心中,以下漏洞已解決: 藍牙:hci_conn:修復 s... | 2026-05-01 |
| CVE-2026-43016 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: bpf: s... 在Linux核心中,以下漏洞已解決: bpf:sockmap:修正 sk_... | 2026-05-01 |
| CVE-2026-43018 | 高 | 8.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: Blueto... 在Linux核心中,以下漏洞已解決: 藍牙:hci_event:修復... | 2026-05-01 |
| CVE-2026-43017 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: Blueto... 在Linux核心中,以下漏洞已解決: 藍牙:MGMT:驗證網狀網... | 2026-05-01 |
| CVE-2026-43014 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: m... 在Linux核心中,以下漏洞已解決: net: macb: 正確取消註... | 2026-05-01 |
| CVE-2026-43013 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net/ml... 在Linux核心中,以下漏洞已解決: net/mlx5: lag: 在建立... | 2026-05-01 |
| CVE-2026-43012 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net/ml... 在Linux核心中,以下漏洞已解決: net/mlx5:修復失敗時 s... | 2026-05-01 |
| CVE-2026-43015 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: m... 在Linux核心中,以下漏洞已解決: net:macb:修正 PCIglu... | 2026-05-01 |
| CVE-2026-43011 | 嚴重 | 9.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net/x2... 在Linux核心中,以下漏洞已解決: net/x25:修復 skb 潛在... | 2026-05-01 |
| CVE-2026-43009 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: bpf: F... 在Linux核心中,以下漏洞已解決: bpf:修復由於原子獲取... | 2026-05-01 |
| CVE-2026-43008 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: gpio:... 在Linux核心中,以下漏洞已解決: gpio:qixis-fpga:修正... | 2026-05-01 |
| CVE-2026-43007 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: accel/... 在Linux核心中,以下漏洞已解決: Accel/qaic:如果所有者... | 2026-05-01 |
| CVE-2026-43006 | 高 | 7.1 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: io_uri... 在Linux核心中,以下漏洞已解決: io_uring/rsrc:拒絕零... | 2026-05-01 |
| CVE-2026-43005 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: hwmon:... 在Linux核心中,以下漏洞已解決: hwmon:(tps53679)透... | 2026-05-01 |
| CVE-2026-43004 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: spi: s... 在Linux核心中,以下漏洞已解決: spi:stm32-ospi:修正r... | 2026-05-01 |
| CVE-2026-43010 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: bpf: R... 在Linux核心中,以下漏洞已解決: bpf:在連線時拒絕可休... | 2026-05-01 |
| CVE-2026-31785 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: drm/xe... 在Linux核心中,以下漏洞已解決: drm/xe/xe_pagefault:... | 2026-05-01 |
| CVE-2026-31784 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: drm/xe... 在Linux核心中,以下漏洞已解決: drm/xe/pxp:跳回後清除... | 2026-05-01 |
| CVE-2026-31777 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ALSA:... 在Linux核心中,以下漏洞已解決: ALSA:ctxfi:檢查索引... | 2026-05-01 |
| CVE-2026-31778 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ALSA:... 在Linux核心中,以下漏洞已解決: ALSA:caiaq:修復 init... | 2026-05-01 |
| CVE-2026-31779 | 高 | 8.1 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: wifi:... 在Linux核心中,以下漏洞已解決: wifi: iwlwifi: mvm: 修... | 2026-05-01 |
| CVE-2026-31780 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: wifi:... 在Linux核心中,以下漏洞已解決: wifi:wilc1000:修正 S... | 2026-05-01 |
| CVE-2026-31781 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: drm/io... 在Linux核心中,以下漏洞已解決: drm/ioc32:停止對 drm_... | 2026-05-01 |
| CVE-2026-31782 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: perf/x... 在Linux核心中,以下漏洞已解決: perf/x86:修正 intel_p... | 2026-05-01 |
| CVE-2026-31783 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: spi: a... 在Linux核心中,以下漏洞已解決: spi:amlogic:spifc-a4... | 2026-05-01 |
| CVE-2026-31771 | 高 | 8.1 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: Blueto... 在Linux核心中,以下漏洞已解決: 藍牙:hci_event:將喚... | 2026-05-01 |
| CVE-2026-31769 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: gpib:... 在Linux核心中,以下漏洞已解決: gpib:修正 IO ioctl 處... | 2026-05-01 |
| CVE-2026-31770 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: hwmon:... 在Linux核心中,以下漏洞已解決: hwmon:(occ)修正 occ... | 2026-05-01 |
| CVE-2026-31772 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: Blueto... 在Linux核心中,以下漏洞已解決: 藍牙:hci_sync:修正 h... | 2026-05-01 |
| CVE-2026-31773 | 高 | 8.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: Blueto... 在Linux核心中,以下漏洞已解決: 藍牙:SMP:從 MITM 狀... | 2026-05-01 |
| CVE-2026-31776 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ALSA:... 在Linux核心中,以下漏洞已解決: ALSA:ctxfi:修復遺失... | 2026-05-01 |
| CVE-2026-31775 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ALSA:... 在Linux核心中,以下漏洞已解決: ALSA:ctxfi:在 DAIO... | 2026-05-01 |
| CVE-2026-31774 | 高 | 7.1 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: io_uri... 在Linux核心中,以下漏洞已解決: io_uring/net:修正 io_... | 2026-05-01 |
| CVE-2026-31768 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: iio: a... 在Linux核心中,以下漏洞已解決: iio: adc: ti-adc161s62... | 2026-05-01 |
| CVE-2026-31767 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: drm/i9... 在Linux核心中,以下漏洞已解決: drm/i915/dsi: Don't do... | 2026-05-01 |
| CVE-2026-31766 | 高 | 7.1 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: drm/am... 在Linux核心中,以下漏洞已解決: drm/amdgpu:驗證使用者... | 2026-05-01 |
| CVE-2026-31765 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: drm/am... 在Linux核心中,以下漏洞已解決: drm/amdgpu:將 AMDGPU_... | 2026-05-01 |
| CVE-2026-31764 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: iio: i... 在Linux核心中,以下漏洞已解決: iio: imu: st_lsm6dsx:... | 2026-05-01 |
| CVE-2026-31763 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: iio: g... 在Linux核心中,以下漏洞已解決: iio:陀螺儀:mpu3050:... | 2026-05-01 |
| CVE-2026-31762 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: iio: g... 在Linux核心中,以下漏洞已解決: iio:陀螺儀:mpu3050:... | 2026-05-01 |
| CVE-2026-31761 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: iio: g... 在Linux核心中,以下漏洞已解決: iio:陀螺儀:mpu3050:... | 2026-05-01 |
| CVE-2026-31760 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: gpib:... 在Linux核心中,以下漏洞已解決: gpib:lpvo_usb:修復斷... | 2026-05-01 |
| CVE-2026-31759 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: usb: u... 在Linux核心中,以下漏洞已解決: USB:ulpi:修正 ulpi_r... | 2026-05-01 |
| CVE-2026-31752 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: bridge... 在Linux核心中,以下漏洞已解決: 橋:br_nd_send:驗證 N... | 2026-05-01 |
| CVE-2026-31753 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: auxdis... 在Linux核心中,以下漏洞已解決: auxdisplay:行顯示:修... | 2026-05-01 |
| CVE-2026-31754 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: usb: c... 在Linux核心中,以下漏洞已解決: USB: CDNS3: gadget:修... | 2026-05-01 |
| CVE-2026-31755 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: usb: c... 在Linux核心中,以下漏洞已解決: usb: cdns3: gadget: 修... | 2026-05-01 |
| CVE-2026-31756 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: usb: d... 在Linux核心中,以下漏洞已解決: usb: dwc2: gadget:修... | 2026-05-01 |
| CVE-2026-31757 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: usb: m... 在Linux核心中,以下漏洞已解決: usb: 雜項: usbio: 修復... | 2026-05-01 |
| CVE-2026-31758 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: usb: u... 在Linux核心中,以下漏洞已解決: usb: usbtmc: 刷新 usbt... | 2026-05-01 |
| CVE-2026-31745 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: reset:... 在Linux核心中,以下漏洞已解決: 重置:gpio:修正reset_... | 2026-05-01 |
| CVE-2026-31746 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: s390/z... 在Linux核心中,以下漏洞已解決: s390/zcrypt:修復 CCA... | 2026-05-01 |
| CVE-2026-31744 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: PM: EM... 在Linux核心中,以下漏洞已解決: PM:EM:修正未找到效能... | 2026-05-01 |
| CVE-2026-31743 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: nvmem:... 在Linux核心中,以下漏洞已解決: nvmem:zynqmp_nvmem:... | 2026-05-01 |
| CVE-2026-31750 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: comedi... 在Linux核心中,以下漏洞已解決: comedi:runflags 無法... | 2026-05-01 |
| CVE-2026-31748 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: comedi... 在Linux核心中,以下漏洞已解決: comedi:me_daq:修復韌... | 2026-05-01 |
| CVE-2026-31749 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: comedi... 在Linux核心中,以下漏洞已解決: comedi:ni_atmio16d:... | 2026-05-01 |
| CVE-2026-31751 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: comedi... 在Linux核心中,以下漏洞已解決: Comedi:dt2815:增加硬... | 2026-05-01 |
| CVE-2026-31747 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: comedi... 在Linux核心中,以下漏洞已解決: comedi:me4000:修復韌... | 2026-05-01 |
| CVE-2026-31734 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: sched_... 在Linux核心中,以下漏洞已解決: sched_ext:修正非 PREE... | 2026-05-01 |
| CVE-2026-31735 | 高 | 8.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: iommup... 在Linux核心中,以下漏洞已解決: iommupt:如果取消映射... | 2026-05-01 |
| CVE-2026-31736 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: e... 在Linux核心中,以下漏洞已解決: net: ethernet: mtk_ppe... | 2026-05-01 |
| CVE-2026-31737 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: f... 在Linux核心中,以下漏洞已解決: net:ftgmac100:修正開... | 2026-05-01 |
| CVE-2026-31738 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: vxlan:... 在Linux核心中,以下漏洞已解決: vxlan:驗證 vxlan_na_c... | 2026-05-01 |
| CVE-2026-31739 | 高 | 8.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: crypto... 在Linux核心中,以下漏洞已解決: crypto: tegra - 加入缺... | 2026-05-01 |
| CVE-2026-31740 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: counte... 在Linux核心中,以下漏洞已解決: 計數器:rz-mtu3-cnt:... | 2026-05-01 |
| CVE-2026-31741 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: counte... 在Linux核心中,以下漏洞已解決: 計數器:rz-mtu3-cnt:... | 2026-05-01 |
| CVE-2026-31742 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: vt: di... 在Linux核心中,以下漏洞已解決: vt:調整大小後在備用畫... | 2026-05-01 |
| CVE-2026-31733 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: sched_... 在Linux核心中,以下漏洞已解決: sched_ext:修復 ddsp_d... | 2026-05-01 |
| CVE-2026-31732 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: gpio:... 在Linux核心中,以下漏洞已解決: gpio:修正 gpiochip_ad... | 2026-05-01 |
| CVE-2026-31731 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: therma... 在Linux核心中,以下漏洞已解決: 熱:核心:解決熱區域移... | 2026-05-01 |
| CVE-2026-31730 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: misc:... 在Linux核心中,以下漏洞已解決: 雜項:fastrpc:可能雙... | 2026-05-01 |
| CVE-2026-31729 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: usb: t... 在Linux核心中,以下漏洞已解決: usb: typec: ucsi: 驗證... | 2026-05-01 |
| CVE-2026-31728 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: usb: g... 在Linux核心中,以下漏洞已解決: USB:小工具:u_ether:... | 2026-05-01 |
| CVE-2026-31727 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: usb: g... 在Linux核心中,以下漏洞已解決: usb: gadget: u_ether:... | 2026-05-01 |
| CVE-2026-31726 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: usb: g... 在Linux核心中,以下漏洞已解決: USB:小工具:uvc:修正... | 2026-05-01 |
| CVE-2026-31725 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: usb: g... 在Linux核心中,以下漏洞已解決: USB:小工具:f_ecm:使... | 2026-05-01 |
| CVE-2026-31720 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: usb: g... 在Linux核心中,以下漏洞已解決: USB:小工具:f_uac1_le... | 2026-05-01 |
| CVE-2026-31721 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: usb: g... 在Linux核心中,以下漏洞已解決: USB:小工具:f_hid:將... | 2026-05-01 |
| CVE-2026-31723 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: usb: g... 在Linux核心中,以下漏洞已解決: usb: gadget: f_subset:... | 2026-05-01 |
| CVE-2026-31724 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: usb: g... 在Linux核心中,以下漏洞已解決: USB:小工具:f_eem:使... | 2026-05-01 |
| CVE-2026-31722 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: usb: g... 在Linux核心中,以下漏洞已解決: USB:小工具:f_rndis:... | 2026-05-01 |
| CVE-2026-31719 | 高 | 7.5 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: crypto... 在Linux核心中,以下漏洞已解決: 加密:krb5enc - 修復非... | 2026-05-01 |
| CVE-2026-31713 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: fuse:... 在Linux核心中,以下漏洞已解決: 保險絲:在同步初始化期... | 2026-05-01 |
| CVE-2026-31710 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: smb: c... 在Linux核心中,以下漏洞已解決: smb:客戶端:修復 SMB1... | 2026-05-01 |
| CVE-2026-31711 | 高 | 7.5 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: smb: s... 在Linux核心中,以下漏洞已解決: smb:伺服器:修復傳輸... | 2026-05-01 |
| CVE-2026-31712 | 高 | 8.3 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ksmbd:... 在Linux核心中,以下漏洞已解決: ksmbd:在 smb_check_pe... | 2026-05-01 |
| CVE-2026-31714 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: f2fs:... 在Linux核心中,以下漏洞已解決: f2fs:修正以避免 f2fs_... | 2026-05-01 |
| CVE-2026-31715 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: f2fs:... 在Linux核心中,以下漏洞已解決: f2fs:修正 f2fs_write_... | 2026-05-01 |
| CVE-2026-31716 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: fs/ntf... 在Linux核心中,以下漏洞已解決: fs/ntfs3: 驗證在日誌重... | 2026-05-01 |
| CVE-2026-31717 | 高 | 8.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ksmbd:... 在Linux核心中,以下漏洞已解決: ksmbd:重新連線時驗證... | 2026-05-01 |
| CVE-2026-31718 | 嚴重 | 9.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ksmbd:... 在Linux核心中,以下漏洞已解決: ksmbd:透過持久清除程... | 2026-05-01 |
| CVE-2026-31709 | 高 | 8.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: smb: c... 在Linux核心中,以下漏洞已解決: smb:客戶端:在 cifsac... | 2026-05-01 |
| CVE-2026-31708 | 高 | 8.1 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: smb: c... 在Linux核心中,以下漏洞已解決: smb:客戶端:修正 smb2... | 2026-05-01 |
| CVE-2026-31707 | 高 | 7.1 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ksmbd:... 在Linux核心中,以下漏洞已解決: ksmbd:驗證 ipc_valida... | 2026-05-01 |
| CVE-2026-31706 | 高 | 8.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ksmbd:... 在Linux核心中,以下漏洞已解決: ksmbd:驗證 num_aces... | 2026-05-01 |
| CVE-2026-31705 | 嚴重 | 9.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ksmbd:... 在Linux核心中,以下漏洞已解決: ksmbd:修正 smb2_get_e... | 2026-05-01 |
| CVE-2026-31704 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ksmbd:... 在Linux核心中,以下漏洞已解決: ksmbd:使用 check_add_... | 2026-05-01 |
| CVE-2026-31703 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: writeb... 在Linux核心中,以下漏洞已解決: 寫回:修正 inode_switc... | 2026-05-01 |
| CVE-2026-31702 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: f2fs:... 在Linux核心中,以下漏洞已解決: f2fs:修正 f2fs_compre... | 2026-05-01 |
| CVE-2026-31701 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ALSA:... 在Linux核心中,以下漏洞已解決: ALSA:caiaq:在 create... | 2026-05-01 |
| CVE-2026-31700 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net/pa... 在Linux核心中,以下漏洞已解決: net/packet:修正 tpack... | 2026-05-01 |
| CVE-2026-31699 | 高 | 7.1 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: crypto... 在Linux核心中,以下漏洞已解決: crypto: ccp: 如果 PSP... | 2026-05-01 |
| CVE-2026-31698 | 高 | 7.1 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: crypto... 在Linux核心中,以下漏洞已解決: crypto: ccp: 如果 PSP... | 2026-05-01 |
| CVE-2026-31697 | 高 | 7.1 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: crypto... 在Linux核心中,以下漏洞已解決: crypto: ccp: 如果 PSP... | 2026-05-01 |
| CVE-2026-31696 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: rxrpc:... 在Linux核心中,以下漏洞已解決: rxrpc:修正非 XDR 金鑰... | 2026-05-01 |
| CVE-2026-31695 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: wifi:... 在Linux核心中,以下漏洞已解決: wifi:virt_wifi:刪除... | 2026-05-01 |
| CVE-2026-31694 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: fuse:... 在Linux核心中,以下漏洞已解決: 保險絲:拒絕頁面快取中... | 2026-05-01 |
| CVE-2026-40684 | 中 | 5.9 | Linux OS | In Exim before 4.99.2, on systems using musl libc (not glibc), an attacker... 在 4.99.2 之前的 Exim 中,在使用 musl libc(而非 glibc... | 2026-04-30 |
| CVE-2026-31693 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: cifs:... 在Linux核心中,以下漏洞已解決: cifs:重播時缺少一些初... | 2026-04-30 |
| CVE-2026-31787 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: xen/pr... 在Linux核心中,以下漏洞已解決: xen/privcmd:透過 VMA... | 2026-04-30 |
| CVE-2026-31786 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: Buffer... 在Linux核心中,以下漏洞已解決: drivers/xen/sys-hyperv... | 2026-04-30 |
| CVE-2026-31692 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: rtnetl... 在Linux核心中,以下漏洞已解決: rtnetlink:新增缺少的... | 2026-04-30 |
| CVE-2026-7381 | 嚴重 | 9.1 | Linux OS | Plack::Middleware::XSendfile versions through 1.0053 for Perl can allow cli... Perl 的 Plack::Middleware::XSendfile 版本到 1.0053 可以... | 2026-04-29 |
| CVE-2026-41499 | 中 | 6.5 | Linux OS | Wazuh is a free and open source platform used for threat prevention, detect... Wazuh 是一個免費的開源平台,用於威脅預防、偵測和回應。... | 2026-04-29 |
| CVE-2026-35368 | 高 | 7.8 | Linux OS | A vulnerability exists in the chroot utility of uutils coreutils when using... 使用 --userspec 選項時,uutils coreutils 的 chroot 實用... | 2026-04-22 |
| CVE-2026-31457 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: mm/dam... 在Linux核心中,以下漏洞已解決: mm/damon/sysfs:檢查re... | 2026-04-22 |
| CVE-2026-31433 | 高 | 8.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ksmbd:... Linux 核心 ksmbd 模組在處理複合請求時存在越界寫入漏洞,... | 2026-04-22 |
| CVE-2026-31431 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: crypto:... Linux 核心 crypto algif_aead 模組存在不當資源傳遞漏洞(... | 2026-04-22 |
| CVE-2026-39418 | 中 | 5 | Linux OS | MaxKB is an open-source AI assistant for enterprise. In versions 2.7.1 and... MaxKB是一款以企業為導向的開源人工智慧助理。在 2.7.1 及... | 2026-04-14 |
| CVE-2026-40223 | 中 | 4.7 | Linux OS | In systemd 258 before 260, a local unprivileged user can trigger an assert... 在 260 之前的 systemd 258 中,當 Delegate=yes 且 User=<... | 2026-04-10 |
| CVE-2026-39314 | 中 | 4 | Linux OS | OpenPrinting CUPS is an open source printing system for Linux and other Uni... OpenPrinting CUPS 是一個適用於 Linux 和其他類 Unix 作業... | 2026-04-07 |
| CVE-2026-34990 | 高 | 7.8 | Linux OS | OpenPrinting CUPS is an open source printing system for Linux and other Uni... OpenPrinting CUPS 是一個適用於 Linux 和其他類 Unix 作業... | 2026-04-03 |
| CVE-2026-35414 | 中 | 4.2 | Linux OS | OpenSSH before 10.3 mishandles the authorized_keys principals option in unc... 10.3 之前的 OpenSSH 在涉及主體清單與使用逗號字元的憑證... | 2026-04-02 |
| CVE-2026-35385 | 高 | 7.5 | Linux OS | In OpenSSH before 10.3, a file downloaded by scp may be installed setuid or... 在 10.3 之前的 OpenSSH 中,如果使用 -O(舊版 scp 協定)... | 2026-04-02 |
| CVE-2026-35386 | 低 | 3.6 | Linux OS | In OpenSSH before 10.3, command execution can occur via shell metacharacter... 在 10.3 之前的 OpenSSH 中,命令執行可以透過命令列中使用... | 2026-04-02 |
| CVE-2026-35387 | 低 | 3.1 | Linux OS | OpenSSH before 10.3 can use unintended ECDSA algorithms. Listing of any ECD... 10.3 之前的 OpenSSH 可以使用非預期的 ECDSA 演算法。 Pub... | 2026-04-02 |
| CVE-2026-35388 | 低 | 2.5 | Linux OS | OpenSSH before 10.3 omits connection multiplexing confirmation for proxy-mo... 10.3 之前的 OpenSSH 省略了代理模式多工會話的連線多工確... | 2026-04-02 |
| CVE-2026-33945 | 嚴重 | 9.9 | Linux OS | Incus is a system container and virtual machine manager. Incus instances ha... Incus 是一個系統容器和虛擬機器管理器。 Incus 實例可以選... | 2026-03-27 |
| CVE-2026-0964 | 中 | 6.3 | Linux OS | A malicious SCP server can send unexpected paths that could make the client... 惡意 SCP 伺服器可以發送意外路徑,從而導致 客戶端應用程... | 2026-03-26 |
| CVE-2026-23369 | 中 | 5.5 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: i2c: i... 在Linux核心中,以下漏洞已解決: i2c: i801: 恢復“i2c: i... | 2026-03-25 |
| CVE-2026-29111 | 中 | 5.5 | Linux OS | systemd, a system and service manager, (as PID 1) hits an assert and freeze... systemd 是一個系統和服務管理員(PID 1),當使用虛假資料... | 2026-03-23 |
| CVE-2026-32606 | 高 | 7.6 | Linux OS | IncusOS is an immutable OS image dedicated to running Incus. Prior to 20260... IncusOS 是一個不可變的作業系統映像,專用於運行 Incus。... | 2026-03-18 |
| CVE-2026-27811 | 高 | 8.8 | Linux OS Apache | Roxy-WI is a web interface for managing Haproxy, Nginx, Apache and Keepaliv... Roxy-WI 是一個用於管理 Haproxy、Nginx、Apache 和 Keepal... | 2026-03-18 |
| CVE-2026-3888 | 高 | 7.8 | Linux OS | Local privilege escalation in snapd on Linux allows local attackers to get... Linux 上的 snapd 中的本機權限提升允許本機攻擊者透過重新... | 2026-03-17 |
| CVE-2026-4105 | 中 | 6.7 | Linux OS | A flaw was found in systemd. The systemd-machined service contains an Impro... systemd 中發現一個缺陷。由於 RegisterMachine D-Bus(桌... | 2026-03-13 |
| CVE-2026-3497 | N/A | - | Linux OS | Vulnerability in the OpenSSH GSSAPI delta included in various Linux distrib... 各種 Linux 發行版中所包含的 OpenSSH GSSAPI 增量中的漏洞... | 2026-03-12 |
| CVE-2026-31979 | 高 | 8.8 | Linux OS | Himmelblau is an interoperability suite for Microsoft Azure Entra ID and In... Himmelblau 是 Microsoft Azure Entra ID 和 Intune 的互通... | 2026-03-11 |
| CVE-2026-32063 | 高 | 7.1 | Linux OS | OpenClaw version 2026.2.19-2 prior to 2026.2.21 contains a command injectio... 2026.2.21 之前的 OpenClaw 版本 2026.2.19-2 在 systemd... | 2026-03-11 |
| CVE-2026-3288 | 高 | 8.8 | Linux OS | A security issue was discovered in ingress-nginx where the `nginx.ingress.k... 在 ingress-nginx 中發現了一個安全性問題,其中「nginx.in... | 2026-03-09 |
| CVE-2025-69651 | 中 | 5.5 | Linux OS | GNU Binutils thru 2.46 readelf contains a vulnerability that leads to an in... GNU Binutils 至 2.46 readelf 包含一個漏洞,在處理具有格... | 2026-03-06 |
| CVE-2026-27944 | 嚴重 | 9.8 | Linux OS | Nginx UI is a web user interface for the Nginx web server. Prior to version... Nginx UI 是 Nginx Web 伺服器的 Web 使用者介面。在版本 2... | 2026-03-05 |
| CVE-2026-28372 | 高 | 7.4 | Linux OS | telnetd in GNU inetutils through 2.7 allows privilege escalation that can b... GNU inetutils 到 2.7 中的 telnetd 允許權限升級,可以透... | 2026-02-27 |
| CVE-2026-27633 | 高 | 7.5 | Linux OS | TinyWeb is a web server (HTTP, HTTPS) written in Delphi for Win32. Versions... TinyWeb 是一個用 Delphi 為 Win32 所寫的 Web 伺服器(HTT... | 2026-02-26 |
| CVE-2026-27630 | 高 | 7.5 | Linux OS | TinyWeb is a web server (HTTP, HTTPS) written in Delphi for Win32. Versions... TinyWeb 是一個用 Delphi 為 Win32 所寫的 Web 伺服器(HTT... | 2026-02-26 |
| CVE-2026-25739 | 中 | 5.4 | Linux OS | Indico is an event management system that uses Flask-Multipass, a multi-bac... Indico 是使用 Flask-Multipass 的事件管理系統,Flask-Mul... | 2026-02-19 |
| CVE-2025-0577 | 中 | 4.8 | Linux OS | An insufficient entropy vulnerability was found in glibc. The getrandom and... glibc 中發現熵不足漏洞。如果在 fork 之後再次呼叫 getran... | 2026-02-18 |
| CVE-2025-32063 | 中 | 6.8 | Linux OS | There is a misconfiguration vulnerability inside the Infotainment ECU manuf... BOSCH 製造的資訊娛樂 ECU 內部存在配置錯誤漏洞。此漏洞發... | 2026-02-15 |
| CVE-2026-23162 | 高 | 7.8 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: drm/xe... 在Linux核心中,以下漏洞已解決: drm/xe/nvm:修復輔助添... | 2026-02-14 |
| CVE-2026-23115 | 中 | 4.7 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: serial... 在Linux核心中,以下漏洞已解決: 序列:修復未設定 tty->... | 2026-02-14 |
| CVE-2026-1357 | 嚴重 | 9.8 | Linux OS PHP | The Migration, Backup, Staging – WPvivid Backup & Migration plugin for Word... 遷移、備份、暫存 – WordPress 的 WPvivid 備份和遷移外掛... | 2026-02-11 |
| CVE-2026-25892 | 高 | 7.5 | Linux OS PHP | Adminer is open-source database management software. Adminer v5.4.1 and ear... Adminer 是開源資料庫管理軟體。 Adminer v5.4.1 及更早版... | 2026-02-09 |
| CVE-2026-2145 | 低 | 3.5 | Linux OS | A vulnerability was identified in cym1102 nginxWebUI up to 4.3.7. The impac... cym1102 nginxWebUI 至 4.3.7 版本中已發現漏洞。受影響的... | 2026-02-08 |
| CVE-2025-15566 | 高 | 8.8 | Linux OS | A security issue was discovered in ingress-nginx where the `nginx.ingress.k... 在 ingress-nginx 中發現了一個安全性問題,其中「nginx.in... | 2026-02-06 |
| CVE-2026-23055 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: i2c: r... 在Linux核心中,以下漏洞已解決: i2c:riic:將掛起處理... | 2026-02-04 |
| CVE-2026-1642 | 中 | 5.9 | Linux OS | A vulnerability exists in NGINX OSS and NGINX Plus when configured to proxy... 當配置為代理程式到上游傳輸層安全性 (TLS) 伺服器時,NGIN... | 2026-02-04 |
| CVE-2026-1580 | 高 | 8.8 | Linux OS | A security issue was discovered in ingress-nginx where the `nginx.ingress.k... 在 ingress-nginx 中發現了一個安全性問題,其中「nginx.in... | 2026-02-03 |
| CVE-2026-24512 | 高 | 8.8 | Linux OS | A security issue was discovered in ingress-nginx where the `rules.http.path... 在 ingress-nginx 中發現了一個安全性問題,其中 `rules.ht... | 2026-02-03 |
| CVE-2026-1616 | 高 | 7.5 | Linux OS | The $uri$args concatenation in nginx configuration file present in Open Sec... v2025.9.0 之前的開放安全性問題管理 (OSIM) 中存在的 ngin... | 2026-01-29 |
| CVE-2026-22796 | 中 | 5.3 | Linux OS | Issue summary: A type confusion vulnerability exists in the signature verif... 問題摘要:簽名中存在類型混淆漏洞 驗證簽署的 PKCS#7 數據... | 2026-01-27 |
| CVE-2026-22795 | 中 | 5.5 | Linux OS | Issue summary: An invalid or NULL pointer dereference can happen in an appl... 問題摘要:無效或 NULL 指標取消引用可能發生在 處理格式錯... | 2026-01-27 |
| CVE-2025-69419 | 高 | 7.4 | Linux OS | Issue summary: Calling PKCS12_get_friendlyname() function on a maliciously... 問題摘要:惡意呼叫 PKCS12_get_Friendlyname() 函數 精心... | 2026-01-27 |
| CVE-2025-69420 | 高 | 7.5 | Linux OS | Issue summary: A type confusion vulnerability exists in the TimeStamp Respo... 問題摘要:TimeStamp Response 中存在類型混淆漏洞 無需先... | 2026-01-27 |
| CVE-2025-69421 | 高 | 7.5 | Linux OS | Issue summary: Processing a malformed PKCS#12 file can trigger a NULL point... 問題摘要:處理格式錯誤的 PKCS#12 檔案可能會觸發 NULL 指... | 2026-01-27 |
| CVE-2025-69418 | 中 | 4 | Linux OS | Issue summary: When using the low-level OCB API directly with AES-NI or<br>... 問題摘要:當直接將低階 OCB API 與 AES-NI 或<br>其他硬體... | 2026-01-27 |
| CVE-2025-66199 | 中 | 5.9 | Linux OS | Issue summary: A TLS 1.3 connection using certificate compression can be fo... 問題摘要:使用憑證壓縮的 TLS 1.3 連線可以 解壓縮前強制... | 2026-01-27 |
| CVE-2025-68160 | 中 | 4.7 | Linux OS | Issue summary: Writing large, newline-free data into a BIO chain using the... 問題摘要:使用以下命令將大型、無換行符的資料寫入 BIO 鏈... | 2026-01-27 |
| CVE-2025-15469 | 中 | 5.5 | Linux OS | Issue summary: The 'openssl dgst' command-line tool silently truncates inpu... 問題摘要:「openssl dgst」命令列工具默默地截斷輸入 使用... | 2026-01-27 |
| CVE-2025-11187 | 中 | 6.1 | Linux OS | Issue summary: PBMAC1 parameters in PKCS#12 files are missing validation wh... 問題摘要:PKCS#12 檔案中的 PBMAC1 參數缺少驗證 它可以觸... | 2026-01-27 |
| CVE-2025-15467 | 高 | 8.8 | Linux OS | Issue summary: Parsing CMS AuthEnvelopedData or EnvelopedData message with... 問題摘要:使用以下指令解析 CMS AuthEnvelopedData 或 Env... | 2026-01-27 |
| CVE-2025-15468 | 中 | 5.9 | Linux OS | Issue summary: If an application using the SSL_CIPHER_find() function in a... 問題摘要:如果應用程式使用 SSL_CIPHER_find() 函數 QUIC... | 2026-01-27 |
| CVE-2025-59464 | 高 | 7.5 | Linux OS | A memory leak in Node.js’s OpenSSL integration occurs when converting `X.50... 將「X.509」憑證欄位轉換為 UTF-8 而不釋放分配的緩衝區時... | 2026-01-20 |
| CVE-2026-23837 | 嚴重 | 9.8 | Linux OS | MyTube is a self-hosted downloader and player for several video websites. A... MyTube 是多個影片網站的自架下載器和播放器。版本 1.7.65... | 2026-01-19 |
| CVE-2026-23838 | N/A | - | Linux OS | Tandoor Recipes is a recipe manager than can be installed with the Nix pack... Tandoor Recipes 是一個配方管理器,可與 Nix 套件管理器一... | 2026-01-19 |
| CVE-2026-22265 | 高 | 7.5 | Linux OS Apache | Roxy-WI is a web interface for managing Haproxy, Nginx, Apache and Keepaliv... Roxy-WI 是一個用於管理 Haproxy、Nginx、Apache 和 Keepal... | 2026-01-15 |
| CVE-2025-68759 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: wifi:... 在Linux核心中,以下漏洞已解決: wifi:rtl818x:修正 rt... | 2026-01-05 |
| CVE-2025-68760 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: iommu/... 在Linux核心中,以下漏洞已解決: iommu/amd:修正 iommu_... | 2026-01-05 |
| CVE-2025-68761 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: hfs: f... 在Linux核心中,以下漏洞已解決: hfs:修正 hfs_ Correct... | 2026-01-05 |
| CVE-2025-68762 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: n... 在Linux核心中,以下漏洞已解決: net:netpoll:在錯誤檢... | 2026-01-05 |
| CVE-2025-68765 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: mt76:... 在Linux核心中,以下漏洞已解決: mt76:mt7615:修正 mt7... | 2026-01-05 |
| CVE-2025-68764 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: NFS: A... 在Linux核心中,以下漏洞已解決: NFS:自動掛載的檔案系... | 2026-01-05 |
| CVE-2025-68763 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: crypto... 在Linux核心中,以下漏洞已解決: crypto: star Five - 正... | 2026-01-05 |
| CVE-2025-68751 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: s390/f... 在Linux核心中,以下漏洞已解決: s390/fpu:修正 fpu_vst... | 2026-01-05 |
| CVE-2025-68752 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: iavf:... 在Linux核心中,以下漏洞已解決: iavf:使用 -EOPNOTSUPP... | 2026-01-05 |
| CVE-2025-68753 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ALSA:... 在Linux核心中,以下漏洞已解決: ALSA:firewire-motu:... | 2026-01-05 |
| CVE-2025-68754 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: rtc: a... 在Linux核心中,以下漏洞已解決: rtc:amlogic-a4:修復... | 2026-01-05 |
| CVE-2025-68755 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: stagin... 在Linux核心中,以下漏洞已解決: 分期:大多數:刪除損壞... | 2026-01-05 |
| CVE-2025-68756 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: block:... 在Linux核心中,以下漏洞已解決: block:在 blk_mq_[un]q... | 2026-01-05 |
| CVE-2025-68757 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: drm/vg... 在Linux核心中,以下漏洞已解決: drm/vgem-fence:修復發... | 2026-01-05 |
| CVE-2025-68758 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: backli... 在Linux核心中,以下漏洞已解決: 背光:led-bl:將 devli... | 2026-01-05 |
| CVE-2026-21444 | 中 | 5.5 | Linux OS | libtpms, a library that provides software emulation of a Trusted Platform M... libtpms 是一個提供可信任平台模組軟體模擬的函式庫,在版... | 2026-01-02 |
| CVE-2023-54317 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: dm fla... 在Linux核心中,以下漏洞已解決: dm flkey:不要損壞零頁... | 2025-12-30 |
| CVE-2023-54271 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: blk-cg... 在Linux核心中,以下漏洞已解決: blk-cgroup:修復由於在... | 2025-12-30 |
| CVE-2022-50819 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: udmabu... 在Linux核心中,以下漏洞已解決: udmabuf:如果sg表建立... | 2025-12-30 |
| CVE-2022-50818 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: scsi:... 在Linux核心中,以下漏洞已解決: scsi:pm8001:修正內部... | 2025-12-30 |
| CVE-2022-50817 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: h... 在Linux核心中,以下漏洞已解決: net: hsr: 避免 skb_clo... | 2025-12-30 |
| CVE-2022-50816 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ipv6:... 在Linux核心中,以下漏洞已解決: ipv6:確保隧道中的設備... | 2025-12-30 |
| CVE-2022-50815 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ext2:... 在Linux核心中,以下漏洞已解決: ext2:新增群組和檔案系... | 2025-12-30 |
| CVE-2022-50814 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: crypto... 在Linux核心中,以下漏洞已解決: crypto: hisilicon/zip... | 2025-12-30 |
| CVE-2022-50813 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: driver... 在Linux核心中,以下漏洞已解決: 驅動程式:mcb:修復 mc... | 2025-12-30 |
| CVE-2022-50812 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: securi... 在Linux核心中,以下漏洞已解決: 安全性:將 CONFIG_ZERO... | 2025-12-30 |
| CVE-2022-50811 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: erofs:... 在Linux核心中,以下漏洞已解決: erofs:修正 z_erofs_ge... | 2025-12-30 |
| CVE-2022-50810 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: rapidi... 在Linux核心中,以下漏洞已解決: rapidio:裝置:修正 mp... | 2025-12-30 |
| CVE-2022-50809 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: xhci:... 在Linux核心中,以下漏洞已解決: xhci: dbc: 修復 xhci_a... | 2025-12-30 |
| CVE-2023-54162 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ksmbd:... 在Linux核心中,以下漏洞已解決: ksmbd:修復 smb2_lock(... | 2025-12-30 |
| CVE-2022-50786 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: media:... 在Linux核心中,以下漏洞已解決: 媒體:s5p-mfc:清除工... | 2025-12-30 |
| CVE-2022-50785 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: fsi: o... 在Linux核心中,以下漏洞已解決: fsi:occ:釋放後防止使... | 2025-12-30 |
| CVE-2022-50784 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: wifi:... 在Linux核心中,以下漏洞已解決: wifi: iwlwifi: mei: 修... | 2025-12-30 |
| CVE-2025-69217 | 高 | 7.7 | Linux OS | coturn is a free open source implementation of TURN and STUN Server. Versio... coturn 是 TURN 和 STUN 伺服器的免費開源實作。版本 4.6.2... | 2025-12-30 |
| CVE-2025-2515 | 高 | 7.2 | Linux OS | A vulnerability was found in BlueChi, a multi-node systemd service controll... RHIVOS 中使用的多節點 systemd 服務控制器 BlueChi 中發現... | 2025-12-24 |
| CVE-2023-54126 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: crypto... 在Linux核心中,以下漏洞已解決: crypto: safexcel - 載... | 2025-12-24 |
| CVE-2023-54006 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: af_uni... 在Linux核心中,以下漏洞已解決: af_unix:修正 unix_tot... | 2025-12-24 |
| CVE-2022-50711 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: e... 在Linux核心中,以下漏洞已解決: net: ethernet: mtk_eth... | 2025-12-24 |
| CVE-2022-50710 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ice: s... 在Linux核心中,以下漏洞已解決: ice: set tx_tstamps wh... | 2025-12-24 |
| CVE-2022-50709 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: wifi:... 在Linux核心中,以下漏洞已解決: wifi: ath9k: avoid uni... | 2025-12-24 |
| CVE-2022-50708 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: HSI: s... 在Linux核心中,以下漏洞已解決: HSI: ssi_protocol: fix... | 2025-12-24 |
| CVE-2022-50707 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: virtio... 在Linux核心中,以下漏洞已解決: virtio-crypto: fix mem... | 2025-12-24 |
| CVE-2022-50706 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net/ie... 在Linux核心中,以下漏洞已解決: net/ieee802154:不要警... | 2025-12-24 |
| CVE-2022-50703 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: soc: q... 在Linux核心中,以下漏洞已解決: soc: qcom: smsm:修正... | 2025-12-24 |
| CVE-2022-50705 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: io_uri... 在Linux核心中,以下漏洞已解決: io_uring/rw:推遲對任... | 2025-12-24 |
| CVE-2022-50704 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: USB: g... 在Linux核心中,以下漏洞已解決: USB:小工具:修正 USB... | 2025-12-24 |
| CVE-2022-50702 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: vdpa_s... 在Linux核心中,以下漏洞已解決: vdpa_sim:修正 vdpasim... | 2025-12-24 |
| CVE-2022-50701 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: wifi:... 在Linux核心中,以下漏洞已解決: wifi: mt76: mt7921s:... | 2025-12-24 |
| CVE-2022-50700 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: wifi:... 在Linux核心中,以下漏洞已解決: wifi: ath10k:延遲緩衝... | 2025-12-24 |
| CVE-2022-50699 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: selinu... 在Linux核心中,以下漏洞已解決: selinux:在convert_con... | 2025-12-24 |
| CVE-2022-50698 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: ASoC:... 在Linux核心中,以下漏洞已解決: ASoC:da7219:修正 da7... | 2025-12-24 |
| CVE-2022-50697 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: mrp: i... 在Linux核心中,以下漏洞已解決: mrp:當申請人 uninit... | 2025-12-24 |
| CVE-2025-14406 | 高 | 7.8 | Linux OS | Soda PDF Desktop Uncontrolled Search Path Element Local Privilege Escalatio... Soda PDF 桌面不受控制的搜尋路徑元素本機權限升級漏洞。此... | 2025-12-23 |
| CVE-2025-14405 | 中 | 6.8 | Linux OS | PDFsam Enhanced Uncontrolled Search Path Element Local Privilege Escalation... PDFsam 增強不受控制的搜尋路徑元素本機權限升級漏洞。此漏... | 2025-12-23 |
| CVE-2025-68341 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: veth:... 在Linux核心中,以下漏洞已解決: veth:減少 XDP no_dire... | 2025-12-23 |
| CVE-2025-68343 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: can: g... 在Linux核心中,以下漏洞已解決: 可以:gs_usb:gs_usb_r... | 2025-12-23 |
| CVE-2025-68342 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: can: g... 在Linux核心中,以下漏洞已解決: 可以:gs_usb:gs_usb_r... | 2025-12-23 |
| CVE-2025-68338 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: net: d... 在Linux核心中,以下漏洞已解決: net: dsa: microchip:... | 2025-12-23 |
| CVE-2025-68339 | N/A | - | Linux OS | In the Linux kernel, the following vulnerability has been resolved: atm/fo... 在Linux核心中,以下漏洞已解決: atm/fore200e:修正 for... | 2025-12-23 |
| CVE-2025-68340 | 中 | 5.5 | Linux OS | In the Linux kernel, the following vulnerability has been resolved: team:... 在Linux核心中,以下漏洞已解決: team:將團隊裝置類型變... | 2025-12-23 |
| CVE 編號 | 嚴重性 | 分數 | 產品 | 描述 | 發布日期 |
|---|---|---|---|---|---|
| CVE-2026-47323 | 嚴重 | 9.8 | Apache | Camel-CXF and Camel-Knative Message Header Injection via Missing Inbound Fi... 透過缺少入站過濾進行 Camel-CXF 和 Camel-Knative 訊息頭... | 2026-05-19 |
| CVE-2026-43515 | N/A | - | Apache | Improper Authorization vulnerability when multiple method constraints defin... 當多個方法約束為 Apache Tomcat 中的相同擴充功能定義 HTT... | 2026-05-12 |
| CVE-2026-43514 | 低 | 3.7 | Apache | Observable Timing Discrepancy vulnerability when comparing AJP secret in Ap... 比較 Apache Tomcat 中的 AJP 秘密時可觀察到的時間差異漏... | 2026-05-12 |
| CVE-2026-43513 | N/A | - | Apache | Improper Handling of Case Sensitivity vulnerability in LockOutRealm in Apac... Apache Tomcat 中 LockOutRealm 中的大小寫敏感漏洞處理不... | 2026-05-12 |
| CVE-2026-43512 | N/A | - | Apache | DEPRECATED: Authentication Bypass Issues vulnerability in digest authentica... 已棄用:身份驗證繞過 在 Apache Tomcat 中的摘要身份驗證... | 2026-05-12 |
| CVE-2026-42498 | 高 | 7.3 | Apache | Exposure of HTTP Authentication Header to unexpected hosts during WebSocket... Apache Tomcat 中的 WebSocket 驗證漏洞期間,HTTP 驗證標... | 2026-05-12 |
| CVE-2026-41293 | N/A | - | Apache | Improper Input Validation vulnerability in Apache Tomcat. This issue affec... Apache Tomcat 中的不正確輸入驗證漏洞。 此問題影響 Apac... | 2026-05-12 |
| CVE-2026-41284 | 高 | 7.5 | Apache | Allocation of Resources Without Limits or Throttling vulnerability in Apach... Apache Tomcat 中無限制的資源分配或限制漏洞。 此問題影... | 2026-05-12 |
| CVE-2026-5081 | 嚴重 | 9.1 | Apache | Apache::Session::Generate::ModUniqueId versions from 1.54 through 1.94 for... Perl 會話 ID 的 Apache::Session::Generate::ModUniqueId... | 2026-05-06 |
| CVE-2026-40010 | 嚴重 | 9.1 | Apache | Missing invocation of Servlet http web request method changeSessionId after... 會話綁定後缺少對 Servlet http Web 請求方法 ChangeSessio... | 2026-05-06 |
| CVE-2026-40075 | 高 | 7.5 | Apache | OpenMRS Core is an open source electronic medical record system platform. I... OpenMRS Core 是一個開源電子病歷系統平台。在版本 2.7.8... | 2026-05-05 |
| CVE-2026-28780 | 嚴重 | 9.8 | Apache | Heap-based Buffer Overflow vulnerability in mod_proxy_ajp of Apache HTTP Se... Apache HTTP Server 的 mod_proxy_ajp 中基於堆疊的緩衝區... | 2026-05-05 |
| CVE-2026-29168 | 高 | 7.3 | Apache | Allocation of Resources Without Limits or Throttling vulnerability in Apach... 透過 OCSP 回應資料無限制地分配資源或限制 Apache HTTP Se... | 2026-05-05 |
| CVE-2026-43870 | 高 | 7.3 | Apache | Origin Validation Error, Improper Limitation of a Pathname to a Restricted... 來源驗證錯誤、路徑名稱到受限目錄的不正確限制(「路徑遍... | 2026-05-05 |
| CVE-2026-40682 | 嚴重 | 9.1 | Apache | XML External Entity (XXE) via Unsanitized Dictionary Parsing in Apache Open... XML 外部實體 (XXE) 透過 Apache OpenNLP DictionaryEntryP... | 2026-05-04 |
| CVE-2026-33523 | 中 | 6.5 | Apache | HTTP response splitting vulnerability in multiple Apache HTTP Server module... 多個 Apache HTTP Server 模組中的 HTTP 回應分割漏洞,後... | 2026-05-04 |
| CVE-2026-33007 | 中 | 5.3 | Apache | A NULL pointer dereference in the mod_authn_socache in Apache HTTP Server 2... Apache HTTP Server 2.4.66 及更早版本中的 mod_authn_soca... | 2026-05-04 |
| CVE-2026-33006 | 中 | 4.8 | Apache | A timing attack against mod_auth_digest in Apache HTTP Server 2.4.66 allows... Apache HTTP Server 2.4.66 中針對 mod_auth_digest 的定時... | 2026-05-04 |
| CVE-2026-29169 | 高 | 7.5 | Apache | A NULL pointer dereference in mod_dav_lock in Apache HTTP Server 2.4.66 and... Apache HTTP Server 2.4.66 及更早版本中的 mod_dav_lock... | 2026-05-04 |
| CVE-2026-23918 | 高 | 8.8 | Apache | Double Free and possible RCE vulnerability in Apache HTTP Server with the H... 使用 HTTP/2 協定的 Apache HTTP Server 中存在雙重釋放和... | 2026-05-04 |
| CVE-2026-34032 | 中 | 5.3 | Apache | Improper Null Termination, Out-of-bounds Read vulnerability in Apache HTTP... Apache HTTP Server 中的不當空終止、越界讀取漏洞。 此問... | 2026-05-04 |
| CVE-2026-33857 | 中 | 5.3 | Apache | Out-of-bounds Read vulnerability in mod_proxy_ajp of Apache HTTP Server.... mod_proxy_ajp 中的越界讀取漏洞 阿帕奇 HTTP 伺服器。... | 2026-05-04 |
| CVE-2026-34059 | 高 | 7.5 | Apache | Buffer Over-read vulnerability in Apache HTTP Server. This issue affects A... Apache HTTP Server 中的緩衝區過度讀取漏洞。 此問題影響... | 2026-05-04 |
| CVE-2026-24072 | 高 | 8.8 | Apache | An escalation of privilege bug in various modules in Apache HTTP 2.4.66 and... Apache HTTP 2.4.66 及更早版本中各模組中的權限升級錯誤允... | 2026-05-04 |
| CVE-2026-42404 | 中 | 6.5 | Apache | Apache Neethi does not impose any restrictions on URIs when manually fetchi... 透過 PolicyReference API 手動取得遠端原則參考時,Apache... | 2026-05-01 |
| CVE-2026-34500 | 中 | 6.5 | Apache | CLIENT_CERT authentication does not fail as expected for some scenarios whe... 當停用軟故障並且在 Apache Tomcat 中使用 FFM 時,CLIENT_... | 2026-04-09 |
| CVE-2026-34487 | 高 | 7.5 | Apache | Insertion of Sensitive Information into Log File vulnerability in the cloud... Apache Tomcat 叢集元件的雲端成員資格中的「將敏感資訊插... | 2026-04-09 |
| CVE-2026-34486 | 高 | 7.5 | Apache | Missing Encryption of Sensitive Data vulnerability in Apache Tomcat due to... 由於 CVE-2026-29146 的修復允許繞過 EncryptInterceptor,... | 2026-04-09 |
| CVE-2026-34483 | 高 | 7.5 | Apache | Improper Encoding or Escaping of Output vulnerability in the JsonAccessLogV... Apache Tomcat 的 JsonAccessLogValve 元件中的輸出編碼或... | 2026-04-09 |
| CVE-2026-32990 | 中 | 5.3 | Apache | Improper Input Validation vulnerability in Apache Tomcat due to an incomple... 由於 CVE-2025-66614 修正不完整,Apache Tomcat 中存在不... | 2026-04-09 |
| CVE-2026-29146 | 高 | 7.5 | Apache Oracle | Padding Oracle vulnerability in Apache Tomcat's EncryptInterceptor with def... 使用預設設定填滿 Apache Tomcat 的 EncryptInterceptor 中... | 2026-04-09 |
| CVE-2026-29145 | 嚴重 | 9.1 | Apache | CLIENT_CERT authentication does not fail as expected for some scenarios whe... 當 Apache Tomcat、Apache Tomcat Native 中的軟故障被停用... | 2026-04-09 |
| CVE-2026-29129 | 高 | 7.5 | Apache | Configured cipher preference order not preserved vulnerability in Apache To... Apache Tomcat 中配置的密碼首選項順序未保留漏洞。 此問... | 2026-04-09 |
| CVE-2026-25854 | 中 | 6.1 | Apache | Occasional URL redirection to untrusted Site ('Open Redirect') vulnerabilit... Apache Tomcat 中透過 LoadBalancerDrainingValve 偶爾出現... | 2026-04-09 |
| CVE-2026-24880 | 高 | 7.5 | Apache | Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggl... Apache Tomcat 中透過無效區塊擴充對 HTTP 請求的解釋不一... | 2026-04-09 |
| CVE-2026-28779 | 高 | 7.5 | Apache | Apache Airflow versions 3.1.0 through 3.1.7 session token (_token) in cooki... 無論設定的 [webserver] base_url 或 [api] base_url,Apac... | 2026-03-17 |
| CVE-2016-20026 | 嚴重 | 9.8 | Apache | ZKTeco ZKBioSecurity 3.0 contains hardcoded credentials in the bundled Apac... ZKTeco ZKBioSecurity 3.0 在捆綁的 Apache Tomcat 伺服器... | 2026-03-16 |
| CVE-2026-23941 | N/A | - | Linux OS Apache | Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') vul... Erlang OTP(inets httpd 模組)中的 HTTP 請求解釋不一致... | 2026-03-13 |
| CVE-2025-40931 | 嚴重 | 9.1 | Linux OS Apache | Apache::Session::Generate::MD5 versions through 1.94 for Perl create insecu... Apache::Session::Generate::MD5 版本到 1.94,用於 Perl... | 2026-03-05 |
| CVE-2026-27446 | 嚴重 | 9.8 | Apache | Missing Authentication for Critical Function (CWE-306) vulnerability in Apa... Apache Artemis、Apache ActiveMQ Artemis 中缺少關鍵功能... | 2026-03-04 |
| CVE-2025-66168 | 中 | 5.4 | Apache | WARNING: Users of 6.x should upgrade to 6.2.4 or later as the fix was miss... 警告: 6.x 使用者應升級到 6.2.4 或更高版本,因為先前的... | 2026-03-04 |
| CVE-2025-40932 | 高 | 8.2 | Apache | Apache::SessionX versions through 2.01 for Perl create insecure session id.... Perl 的 Apache::SessionX 版本到 2.01 建立不安全的會話 I... | 2026-02-27 |
| CVE-2026-24734 | 高 | 7.5 | Apache | Improper Input Validation vulnerability in Apache Tomcat Native, Apache Tom... Apache Tomcat Native、Apache Tomcat 中的不正確輸入驗證... | 2026-02-17 |
| CVE-2026-24733 | 低 | 3.7 | Apache | Improper Input Validation vulnerability in Apache Tomcat. Tomcat did not... Apache Tomcat 中的不正確輸入驗證漏洞。 Tomcat 沒有將... | 2026-02-17 |
| CVE-2025-66614 | 嚴重 | 9.1 | Apache | Improper Input Validation vulnerability. This issue affects Apache Tomcat:... 不正確的輸入驗證漏洞。 此問題影響 Apache Tomcat:從 11... | 2026-02-17 |
| CVE-2026-26214 | 高 | 7.4 | Apache | Galaxy FDS Android SDK (XiaoMi/galaxy-fds-sdk-android) version 3.0.8 and pr... Galaxy FDS Android SDK (XiaoMi/galaxy-fds-sdk-android)... | 2026-02-12 |
| CVE-2026-23901 | 低 | 2.5 | Apache | Observable Timing Discrepancy vulnerability in Apache Shiro. This issue af... Apache Shiro 中可觀察到的時序差異漏洞。 此問題影響 Apa... | 2026-02-10 |
| CVE-2026-22444 | 高 | 7.1 | Apache | The "create core" API of Apache Solr 8.6 through 9.10.0 lacks sufficient in... Apache Solr 8.6 到 9.10.0 的「建立核心」API 對某些 API... | 2026-01-21 |
| CVE-2026-22022 | 高 | 8.2 | Apache | Deployments of Apache Solr 5.3.0 through 9.10.0 that rely on Solr's "Rule B... 由於這些元件中的輸入驗證不夠嚴格,依賴 Solr 的「基於規... | 2026-01-21 |
| CVE-2025-29847 | 高 | 7.5 | Apache | A vulnerability in Apache Linkis. Problem Description When using the JDBC... Apache Linkis 中的漏洞。 問題描述 使用 JDBC 引擎和資料... | 2026-01-19 |
| CVE-2025-60021 | 嚴重 | 9.8 | Apache | Remote command injection vulnerability in heap profiler builtin service in... 所有平台上的 Apache bRPC((所有版本 < 1.15.0))中的堆... | 2026-01-16 |
| CVE-2025-68493 | 高 | 8.1 | Apache | Missing XML Validation vulnerability in Apache Struts, Apache Struts. This... Apache Struts 中缺少 XML 驗證漏洞,Apache Struts。 此... | 2026-01-11 |
| CVE 編號 | 嚴重性 | 分數 | 產品 | 描述 | 發布日期 |
|---|---|---|---|---|---|
| CVE-2026-48241 | 高 | 8.1 | MySQL PHP | Open ISES Tickets before 3.44.2 contains hardcoded MySQL database credentia... 3.44.2 之前的 Open ISES Tickets 在 loader.php(面向公眾... | 2026-05-21 |
| CVE-2026-48242 | 高 | 8.1 | MySQL PHP | Open ISES Tickets before 3.44.2 contains hardcoded MySQL database connectio... 3.44.2 之前的 Open ISES Tickets 在 import_mdb.php 包含... | 2026-05-21 |
| CVE-2026-48236 | 高 | 7.1 | MySQL PHP | Open ISES Tickets before 3.44.2 contains a SQL injection vulnerability in d... 3.44.2 之前的 Open ISES Tickets 在 db_loader.php 中包含... | 2026-05-21 |
| CVE-2026-44047 | 高 | 8.8 | MySQL | An SQL injection vulnerability in the MySQL CNID backend in Netatalk 3.1.0... Netatalk 3.1.0 至 4.4.2 中 MySQL CNID 後端中的 SQL 注入... | 2026-05-21 |
| CVE-2021-47959 | 高 | 7.5 | MySQL | WordPress Plugin WPGraphQL 1.3.5 contains a denial of service vulnerability... WordPress 外掛程式 WPGraphQL 1.3.5 包含拒絕服務漏洞,允... | 2026-05-15 |
| CVE-2026-46446 | 高 | 7.1 | MySQL | SOGo before 5.12.7, when PostgreSQL or MariaDB is used, and cleartext passw... SOGo 5.12.7之前,當使用PostgreSQL或MariaDB,並且儲存明... | 2026-05-14 |
| CVE-2026-44347 | 中 | 5.8 | Linux OS MySQL | Warpgate is an open source SSH, HTTPS and MySQL bastion host for Linux. Pri... Warpgate 是一款適用於 Linux 的開源 SSH、HTTPS 和 MySQL... | 2026-05-12 |
| CVE-2026-43873 | 高 | 7.5 | MySQL PHP | WWBN AVideo is an open source video platform. In versions up to and includi... WWBN AVideo 是一個開源視訊平台。在 29.0 及之前的版本中... | 2026-05-11 |
| CVE-2026-8276 | 低 | 3.7 | MySQL MSSQL | A flaw has been found in bettercap up to 2.41.5. Affected by this issue is... 2.41.5 之前的 bettercap 中已發現一個缺陷。受此問題影響... | 2026-05-11 |
| CVE-2026-41496 | 高 | 8.1 | MySQL | PraisonAI is a multi-agent teams system. Prior to praisonai version 4.6.9 a... PraisonAI 是一個多代理團隊系統。在 praisonai 版本 4.6.9... | 2026-05-08 |
| CVE-2026-42237 | 高 | 8.8 | MySQL | n8n is an open source workflow automation platform. Prior to versions 1.123... n8n 是一個開源工作流程自動化平台。在版本 1.123.32、2.17... | 2026-05-04 |
| CVE-2026-6524 | 中 | 5.5 | MySQL | MySQL protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4... Wireshark 4.6.0 至 4.6.4 和 4.4.0 至 4.4.14 中的 MySQL... | 2026-04-30 |
| CVE-2026-35549 | 中 | 6.5 | MySQL | An issue was discovered in MariaDB Server before 11.4.10, 11.5.x through 11... 在 11.4.10 之前的 MariaDB 伺服器、11.8.6 之前的 11.5.x... | 2026-04-03 |
| CVE-2026-32710 | 高 | 8.5 | MySQL MSSQL | MariaDB server is a community developed fork of MySQL server. An authentica... MariaDB 伺服器是社群開發的 MySQL 伺服器分支。經過驗證的... | 2026-03-20 |
| CVE-2026-22730 | 高 | 8.8 | MySQL | A critical SQL injection vulnerability in Spring AI's MariaDBFilterExpressi... Spring AI 的 MariaDBFilterExpressionConverter 中存在一... | 2026-03-18 |
| CVE-2026-3494 | 中 | 4.3 | MySQL | In MariaDB server version through 11.8.5, when server audit plugin is enabl... 在 MariaDB 伺服器版本至 11.8.5 中,當使用配置有 QUERY_D... | 2026-03-03 |
| CVE-2026-25923 | 嚴重 | 9.1 | MySQL PHP | my little forum is a PHP and MySQL based internet forum that displays the m... 我的小論壇是一個基於 PHP 和 MySQL 的網路論壇,它以經典... | 2026-02-09 |
| CVE-2020-37116 | 高 | 8.8 | MySQL PHP | GUnet OpenEclass 1.7.3 includes phpMyAdmin 2.10.0.2 by default, which allow... GUnet OpenEclass 1.7.3 預設包含 phpMyAdmin 2.10.0.2,允... | 2026-02-03 |
| CVE-2026-21968 | 中 | 6.5 | MySQL MSSQL Oracle | Vulnerability in the MySQL Server product of Oracle MySQL (component: Serve... Oracle MySQL 的 MySQL Server 產品(元件:伺服器:最佳化... | 2026-01-20 |
| CVE-2026-21965 | 低 | 2.7 | MySQL MSSQL Oracle | Vulnerability in the MySQL Server product of Oracle MySQL (component: Serve... Oracle MySQL 的 MySQL Server 產品(元件:Server:Plugga... | 2026-01-20 |
| CVE-2026-21964 | 中 | 4.9 | MySQL MSSQL Oracle | Vulnerability in the MySQL Server product of Oracle MySQL (component: Serve... Oracle MySQL 的 MySQL Server 產品(元件:伺服器:執行緒... | 2026-01-20 |
| CVE-2026-21952 | 中 | 4.9 | MySQL MSSQL Oracle | Vulnerability in the MySQL Server product of Oracle MySQL (component: Serve... Oracle MySQL 的 MySQL Server 產品(元件:伺服器:解析器... | 2026-01-20 |
| CVE-2026-21950 | 中 | 6.5 | MySQL MSSQL Oracle | Vulnerability in the MySQL Server product of Oracle MySQL (component: Serve... Oracle MySQL 的 MySQL Server 產品(元件:伺服器:最佳化... | 2026-01-20 |
| CVE-2026-21949 | 中 | 6.5 | MySQL MSSQL Oracle | Vulnerability in the MySQL Server product of Oracle MySQL (component: Serve... Oracle MySQL 的 MySQL Server 產品(元件:伺服器:最佳化... | 2026-01-20 |
| CVE-2026-21948 | 中 | 4.9 | MySQL MSSQL Oracle | Vulnerability in the MySQL Server product of Oracle MySQL (component: Serve... Oracle MySQL 的 MySQL Server 產品(元件:伺服器:最佳化... | 2026-01-20 |
| CVE-2026-21941 | 中 | 4.9 | MySQL MSSQL Oracle | Vulnerability in the MySQL Server product of Oracle MySQL (component: Serve... Oracle MySQL 的 MySQL Server 產品(元件:伺服器:最佳化... | 2026-01-20 |
| CVE-2026-21937 | 中 | 4.9 | MySQL MSSQL Oracle | Vulnerability in the MySQL Server product of Oracle MySQL (component: Serve... Oracle MySQL 的 MySQL Server 產品(元件:伺服器:DDL)... | 2026-01-20 |
| CVE-2026-21936 | 中 | 4.9 | MySQL MSSQL Oracle | Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoD... Oracle MySQL(元件:InnoDB)的 MySQL Server 產品中存在... | 2026-01-20 |
| CVE-2026-21929 | 中 | 5.3 | MySQL MSSQL Oracle | Vulnerability in the MySQL Server product of Oracle MySQL (component: Serve... Oracle MySQL 的 MySQL Server 產品(元件:伺服器:解析器... | 2026-01-20 |
| CVE-2021-47761 | 高 | 7.8 | MySQL | MilleGPG5 5.7.2 contains a local privilege escalation vulnerability that al... MilleGPG5 5.7.2 包含本地權限提升漏洞,允許經過驗證的使... | 2026-01-15 |
| CVE-2026-22027 | 中 | 6 | MySQL | CryptoLib provides a software-only solution using the CCSDS Space Data Link... CryptoLib 使用 CCSDS 太空資料鏈路安全協定 - 擴充程式 (S... | 2026-01-10 |
| CVE-2026-21856 | 高 | 7.2 | MySQL | The Tarkov Data Manager is a tool to manage the Tarkov item data. Prior to... 塔科夫資料管理器是管理塔科夫物品資料的工具。在提交 9bdb... | 2026-01-07 |
| CVE 編號 | 嚴重性 | 分數 | 產品 | 描述 | 發布日期 |
|---|---|---|---|---|---|
| CVE-2026-8426 | N/A | - | PHP | Concrete CMS 9.5.0 and below does not validate a CSRF token before processi... Concrete CMS 9.5.0 及更低版本在處理對 /dashboard/extend... | 2026-05-21 |
| CVE-2026-8197 | N/A | - | PHP | Concrete CMS 9.5.0 and below is vulnerable to Stored XSS via OAuth integrat... Concrete CMS 9.5.0 及更低版本容易透過 OAuth 整合名稱受... | 2026-05-21 |
| CVE-2026-8134 | N/A | - | PHP | Concrete CMS 9.5.0 and below fails to sanitize path traversal sequences in... 儲存頁面類型編輯器表單佈局時,Concrete CMS 9.5.0 及更低... | 2026-05-21 |
| CVE-2026-8135 | N/A | - | PHP | Concrete CMS 9.5.0 and below is vulnerable to Remote Code Execution due to... 由於 ExpressEntryList 區塊控制器中發生不安全的反序列化... | 2026-05-21 |
| CVE-2026-6279 | 嚴重 | 9.8 | PHP | The Avada Builder (fusion-builder) plugin for WordPress is vulnerable to Un... WordPress 的 Avada Builder (fusion-builder) 外掛程式在... | 2026-05-21 |
| CVE-2026-39850 | 高 | 7.4 | PHP | Yii 2 is a PHP application framework. Versions 2.0.54 and prior contain fla... Yii 2 是一個 PHP 應用程式框架。 2.0.54 及之前的版本在核... | 2026-05-20 |
| CVE-2026-24425 | 高 | 8.8 | PHP | Twig versions 2.16.x and 3.9.0 through 3.25.x contain a sandbox bypass vuln... Twig 版本 2.16.x 和 3.9.0 到 3.25.x 在使用 SourcePolicy... | 2026-05-20 |
| CVE-2026-7522 | 高 | 8.8 | PHP | The Advanced Database Cleaner – Premium plugin for WordPress is vulnerable... 進階資料庫清理器 - WordPress 的高階外掛程式在 4.1.0 及... | 2026-05-20 |
| CVE-2026-7637 | 嚴重 | 9.8 | PHP | The Boost plugin for WordPress is vulnerable to PHP Object Injection in ver... WordPress 的 Boost 外掛程式在 2.0.3 及更高版本中,透過... | 2026-05-20 |
| CVE-2026-8624 | 中 | 6.1 | PHP | The LJ comments import: reloaded plugin for WordPress is vulnerable to Refl... LJ 評論匯入:由於輸入清理和輸出轉義不足,在 0.97.1 及之... | 2026-05-20 |
| CVE-2026-8626 | 中 | 6.1 | PHP | The SponsorMe plugin for WordPress is vulnerable to Reflected Cross-Site Sc... 由於輸入清理和輸出轉義不足,WordPress 的 SponsorMe 外掛... | 2026-05-20 |
| CVE-2026-8627 | 中 | 6.1 | PHP | The Correct Prices plugin for WordPress is vulnerable to Reflected Cross-Si... WordPress 的正確價格外掛程式在 1.0 及以下版本中容易透過... | 2026-05-20 |
| CVE-2026-6555 | 嚴重 | 9.8 | PHP | The ProSolution WP Client plugin for WordPress is vulnerable to Arbitrary F... WordPress 的 ProSolution WP 用戶端外掛程式在 2.0.0 及以... | 2026-05-20 |
| CVE-2026-6072 | 中 | 6.5 | PHP | The Oliver POS – A WooCommerce Point of Sale (POS) plugin for WordPress is... Oliver POS – WordPress 的 WooCommerce 銷售點 (POS) 外掛... | 2026-05-20 |
| CVE-2026-34216 | 中 | 6.6 | PHP | CtrlPanel is open-source billing software for hosting providers. In version... CtrlPanel 是託管提供者的開源計費軟體。在版本 1.1.1 及之... | 2026-05-19 |
| CVE-2026-43633 | 嚴重 | 10 | PHP | HestiaCP versions 1.9.0 through 1.9.4 contain a deserialization vulnerabili... HestiaCP 版本 1.9.0 到 1.9.4 在 Web 終端元件中包含一個... | 2026-05-19 |
| CVE-2026-42099 | N/A | - | PHP | Sparx Pro Cloud Server is vulnerable to a Race Condition in the /data_api/d... Sparx Pro Cloud Server 容易受到 /data_api/dl_internal_a... | 2026-05-19 |
| CVE-2026-4883 | 嚴重 | 9.8 | PHP | The Piotnet Forms plugin for WordPress is vulnerable to arbitrary file uplo... WordPress 的 Piotnet Forms 外掛容易受到任意檔案上傳的攻... | 2026-05-19 |
| CVE-2026-8727 | N/A | - | PHP | The Crawler extension passes the X-T3Crawler-Meta response header from craw... Crawler 擴充將 X-T3Crawler-Meta 回應標頭從已爬網的 URL... | 2026-05-19 |
| CVE-2026-46725 | N/A | - | PHP | The extension passes an attacker-controlled cookie directly to PHP's unseri... 此擴充將攻擊者控制的 cookie 直接傳遞給 PHP 的 unseriali... | 2026-05-19 |
| CVE-2026-4885 | 嚴重 | 9.8 | PHP | The Piotnet Addons for Elementor Pro plugin for WordPress is vulnerable to... WordPress 的 Piotnet Addons for Elementor Pro 外掛程式... | 2026-05-19 |
| CVE-2018-25324 | 中 | 6.2 | Apache PHP | Simple Fields 0.2 through 0.3.5 WordPress Plugin contains a local file incl... Simple Fields 0.2 到 0.3.5 WordPress 外掛包含一個本地檔... | 2026-05-17 |
| CVE-2021-47976 | 高 | 8.8 | PHP | TextPattern CMS 4.9.0-dev contains a remote code execution vulnerability th... TextPattern CMS 4.9.0-dev 包含一個遠端執行程式碼漏洞,... | 2026-05-16 |
| CVE-2021-47956 | 高 | 8.2 | PHP | EgavilanMedia PHPCRUD 1.0 contains an SQL injection vulnerability that allo... EgavilanMedia PHPCRUD 1.0 包含一個 SQL 注入漏洞,允許未... | 2026-05-16 |
| CVE-2026-46367 | 高 | 7.6 | PHP | phpMyFAQ before 4.1.2 contains a stored cross-site scripting vulnerability... 4.1.2 之前的 phpMyFAQ 在 Utils::parseUrl() 中包含一個儲... | 2026-05-15 |
| CVE-2026-46366 | 高 | 7.5 | PHP | phpMyFAQ before 4.1.2 contains an information disclosure vulnerability in t... 4.1.2 先前的 phpMyFAQ 在 getIdFromSolutionId() 方法中包... | 2026-05-15 |
| CVE-2026-46365 | 中 | 5.4 | PHP | phpMyFAQ before 4.1.2 contains a missing authorization vulnerability in the... 4.1.2 之前的 phpMyFAQ 在 DELETE /admin/api/content/tags... | 2026-05-15 |
| CVE-2026-46364 | 嚴重 | 9.8 | PHP | phpMyFAQ before 4.1.2 contains an unauthenticated SQL injection vulnerabili... 4.1.2 之前的 phpMyFAQ 中的BuiltinCaptcha::garbageCollec... | 2026-05-15 |
| CVE-2026-46363 | 中 | 5.4 | PHP | phpMyFAQ before 4.1.2 contains a stored cross-site scripting vulnerability... 4.1.2 之前的 phpMyFAQ 在 FAQ 建立和更新端點中包含一個儲... | 2026-05-15 |
| CVE-2026-46362 | 中 | 6.5 | PHP | phpMyFAQ before 4.1.2 contains an authorization bypass vulnerability in Abs... 4.1.2 之前的 phpMyFAQ 在 AbstractAdministrationControll... | 2026-05-15 |
| CVE-2026-46361 | 中 | 6.9 | PHP | phpMyFAQ before 4.1.2 contains a stored cross-site scripting vulnerability... 4.1.2 之前的 phpMyFAQ 在 search.twig 中包含一個儲存的跨... | 2026-05-15 |
| CVE-2026-46360 | 中 | 5.4 | PHP | phpMyFAQ before 4.1.2 contains a stored cross-site scripting vulnerability... 4.1.2 之前的 phpMyFAQ 在 SvgSanitizer::decodeAllEntitie... | 2026-05-15 |
| CVE-2026-46359 | 高 | 7.5 | PHP | phpMyFAQ before 4.1.2 contains a sql injection vulnerability in CurrentUser... 4.1.2 之前的 phpMyFAQ 在 CurrentUser::setTokenData 中包... | 2026-05-15 |
| CVE-2026-45010 | 嚴重 | 9.1 | PHP | phpMyFAQ before 4.1.2 contains an improper restriction of excessive authent... 4.1.2 之前的 phpMyFAQ 在 /admin/check 端點中包含對過多... | 2026-05-15 |
| CVE-2026-45009 | 中 | 4.3 | PHP | phpMyFAQ before 4.1.2 contains an insufficient authorization vulnerability... 4.1.2 之前的 phpMyFAQ 在 admin-api 路由中包含授權不足的... | 2026-05-15 |
| CVE-2026-45008 | 中 | 6.5 | PHP | phpMyFAQ before 4.1.2 contains a path traversal vulnerability in Client::de... 4.1.2 之前的 phpMyFAQ 在 Client::deleteClientFolder 中... | 2026-05-15 |
| CVE-2026-45007 | 中 | 4.3 | PHP | phpMyFAQ before 4.1.2 contains missing permission checks in ConfigurationTa... 4.1.2 之前的 phpMyFAQ 在 ConfigurationTabController.php... | 2026-05-15 |
| CVE-2021-47964 | 高 | 8.8 | PHP | Schlix CMS 2.2.6-6 contains a remote code execution vulnerability that allo... Schlix CMS 2.2.6-6 包含一個遠端程式碼執行漏洞,允許經過... | 2026-05-15 |
| CVE-2021-47966 | 高 | 8.2 | PHP | PHP Timeclock 1.04 contains time-based and boolean-based blind SQL injectio... PHP Timeclock 1.04 在login.php 的login_userid 參數中包... | 2026-05-15 |
| CVE-2021-47967 | 中 | 6.1 | PHP | PHP Timeclock 1.04 contains multiple cross-site scripting vulnerabilities t... PHP Timeclock 1.04 包含多個跨站點腳本漏洞,允許未經身份... | 2026-05-15 |
| CVE-2026-42155 | N/A | - | PHP | Magento Long Term Support (LTS) is an unofficial, community-driven project... Magento 長期支援 (LTS) 是一個非官方的社群驅動項目,提供... | 2026-05-15 |
| CVE-2026-6811 | 中 | 5.9 | PHP | Stack exhaustion vulnerability in the MongoDB PHP driver can cause applicat... 在異常情況下處理深度嵌套的 BSON 文件(且這些 BSON 文件... | 2026-05-14 |
| CVE-2026-41937 | 高 | 7.2 | PHP | Vvveb before 1.0.8.3 contains an unrestricted file upload vulnerability in... 1.0.8.3之前的Vvveb在插件上傳端點中包含一個不受限制的檔... | 2026-05-14 |
| CVE-2026-41935 | 高 | 7.1 | PHP | Vvveb before 1.0.8.3 contains an uncontrolled recursion vulnerability in th... 1.0.8.3 之前的 Vvveb 在管理控制器調度週期中包含一個不受... | 2026-05-14 |
| CVE-2026-45053 | 嚴重 | 9.1 | PHP | CubeCart is an ecommerce software solution. Prior to 6.7.0, an Authenticate... CubeCart 是一個電子商務軟體解決方案。在 6.7.0 之前,Cub... | 2026-05-13 |
| CVE-2026-44377 | 嚴重 | 9.1 | PHP | CubeCart is an ecommerce software solution. Prior to 6.7.0, an Authenticate... CubeCart 是一個電子商務軟體解決方案。在6.7.0之前,CubeC... | 2026-05-13 |
| CVE-2026-42552 | 高 | 7.5 | PHP | Flight is an extensible micro-framework for PHP. Prior to 3.18.1, the defau... Flight 是一個可擴充的 PHP 微框架。在 3.18.1 之前,預設... | 2026-05-13 |
| CVE-2026-42551 | 高 | 7.5 | PHP | Flight is an extensible micro-framework for PHP. Prior to 3.18.1, Request::... Flight 是一個可擴充的 PHP 微框架。在 3.18.1 之前,Reque... | 2026-05-13 |
| CVE-2026-42550 | 高 | 8.8 | PHP | Flight is an extensible micro-framework for PHP. Prior to 3.18.1, SimplePdo... Flight 是一個可擴充的 PHP 微框架。在 3.18.1 之前,Simpl... | 2026-05-13 |
| CVE-2026-42549 | 中 | 4.4 | PHP | Flight is an extensible micro-framework for PHP. Prior to 3.18.1, the make:... Flight 是一個可擴充的 PHP 微框架。在 3.18.1 之前,make:... | 2026-05-13 |
| CVE-2026-42548 | N/A | - | PHP | Flight is an extensible micro-framework for PHP. Prior to 3.18.1, Flight::j... Flight 是一個可擴充的 PHP 微框架。在 3.18.1 之前,Fligh... | 2026-05-13 |
| CVE-2020-37222 | 高 | 7.2 | PHP | Kuicms Php EE 2.0 contains a persistent cross-site scripting vulnerability... Kuicms Php EE 2.0 包含一個持久性跨站腳本漏洞,允許未經... | 2026-05-13 |
| CVE-2020-37169 | 中 | 5.5 | PHP | WordPress Plugin ultimate-member 2.1.3 contains a local file inclusion vuln... WordPress 外掛程式 Ultimate-member 2.1.3 包含一個本機檔... | 2026-05-13 |
| CVE-2026-3425 | 高 | 8.8 | PHP | The RTMKit Addons for Elementor plugin for WordPress is vulnerable to Local... WordPress 的 RTMKit Addons for Elementor 外掛程式在 2.0... | 2026-05-13 |
| CVE-2026-7635 | 高 | 8.1 | PHP | The coreActivity: Activity Logging for WordPress plugin for WordPress is vu... WordPress 的 coreActivity:WordPress 活動日誌記錄外掛程... | 2026-05-13 |
| CVE-2026-44262 | 嚴重 | 9.4 | PHP | Scramble generates API documentation for Laravel project. From 0.13.2 to be... Scramble 为 Laravel 项目生成 API 文档。從 0.13.2 到 0.1... | 2026-05-12 |
| CVE-2026-40902 | 高 | 7.5 | PHP | PhpSpreadsheet is a pure PHP library for reading and writing spreadsheet fi... PhpSpreadsheet 是一個用於讀取和寫入電子表格檔案的純 PHP... | 2026-05-12 |
| CVE-2026-40863 | 高 | 7.5 | PHP | PhpSpreadsheet is a pure PHP library for reading and writing spreadsheet fi... PhpSpreadsheet 是一個用於讀取和寫入電子表格檔案的純 PHP... | 2026-05-12 |
| CVE-2026-44167 | 高 | 7.5 | PHP | phpseclib is a PHP secure communications library. Prior to 1.0.29, 2.0.54,... phpseclib 是一個 PHP 安全通訊函式庫。在 1.0.29、2.0.54... | 2026-05-12 |
| CVE-2023-27753 | 高 | 8 | PHP | An arbitrary file upload vulnerability in MK-Auth 23.01K4.9 allows attacker... MK-Auth 23.01K4.9 中的任意檔案上傳漏洞允許攻擊者透過上... | 2026-05-12 |
| CVE-2026-6663 | 中 | 4.8 | PHP | The GWD Connect plugin for WordPress is vulnerable to missing authorization... WordPress 的 GWD Connect 外掛程式在 2.9 及之前的所有版... | 2026-05-12 |
| CVE-2026-43884 | 高 | 7.7 | PHP | WWBN AVideo is an open source video platform. In versions up to and includi... WWBN AVideo 是一個開源視訊平台。在 29.0 及之前的版本中... | 2026-05-11 |
| CVE-2026-43876 | 中 | 6.4 | PHP | WWBN AVideo is an open source video platform. In versions up to and includi... WWBN AVideo 是一個開源視訊平台。在 29.0 及之前的版本中... | 2026-05-11 |
| CVE-2026-42607 | 嚴重 | 9.1 | PHP | Grav is a file-based Web platform. Prior to 2.0.0-beta.2, an authenticated... Grav 是一個基於文件的 Web 平台。在 2.0.0-beta.2 之前,... | 2026-05-11 |
| CVE-2026-6433 | 高 | 7.3 | PHP | The Custom css-js-php WordPress plugin through 2.0.7 does not properly sani... 自 2.0.7 版本開始,自訂 css-js-php WordPress 外掛程式在... | 2026-05-11 |
| CVE-2022-50944 | 高 | 8.8 | PHP | Aero CMS 0.0.1 contains a PHP code injection vulnerability that allows auth... Aero CMS 0.0.1包含一個PHP程式碼注入漏洞,允許經過驗證的... | 2026-05-10 |
| CVE-2021-47943 | 高 | 8.8 | PHP | TextPattern CMS 4.8.7 contains a remote code execution vulnerability that a... TextPattern CMS 4.8.7 包含一個遠端執行程式碼漏洞,允許... | 2026-05-10 |
| CVE-2021-47940 | 嚴重 | 9.8 | PHP | WordPress Plugin Download From Files version 1.48 and earlier contains an a... WordPress 插件从文件下载版本 1.48 及更早版本包含任意文... | 2026-05-10 |
| CVE-2021-47939 | 高 | 8.8 | PHP | Evolution CMS 3.1.6 contains a remote code execution vulnerability that all... Evolution CMS 3.1.6 包含一個遠端程式碼執行漏洞,該漏洞... | 2026-05-10 |
| CVE-2021-47938 | 高 | 8.8 | PHP | ImpressCMS 1.4.2 contains a remote code execution vulnerability in the auto... ImpressCMS 1.4.2 在自動任務管理介面中包含一個遠端執行程... | 2026-05-10 |
| CVE-2021-47936 | 嚴重 | 9.8 | PHP | OpenCATS 0.9.4 contains a remote code execution vulnerability that allows u... OpenCATS 0.9.4 包含一個遠端程式碼執行漏洞,允許未經身份... | 2026-05-10 |
| CVE-2021-47933 | 嚴重 | 9.8 | PHP | WordPress MStore API 2.0.6 contains an arbitrary file upload vulnerability... WordPress MStore API 2.0.6 包含任意檔案上傳漏洞,允許未... | 2026-05-10 |
| CVE-2026-7263 | 高 | 7.5 | PHP | In PHP versions 8.4.* before 8.4.21 and 8.5.* before 8.5.6, DOMNode::C14N()... 在 8.4.21 之前的 PHP 版本 8.4.* 和 8.5.6 之前的 8.5.*... | 2026-05-10 |
| CVE-2026-6104 | 嚴重 | 9.1 | PHP | In PHP versions 8.4.* before 8.4.21 and 8.5.* before 8.5.6, when an encodin... 在 8.4.21 之前的 PHP 版本 8.4.* 和 8.5.6 之前的 8.5.*... | 2026-05-10 |
| CVE-2026-7568 | 高 | 7.5 | PHP | In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.... 在 8.2.31 之前的 PHP 版本 8.2.*、8.3.31 之前的 8.3.*、8... | 2026-05-10 |
| CVE-2026-7262 | 高 | 7.5 | PHP | In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.... 在 8.2.31 之前的 PHP 版本 8.2.*、8.3.31 之前的 8.3.*、8... | 2026-05-10 |
| CVE-2026-7261 | 嚴重 | 9.8 | PHP | In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.... 在 8.2.31 之前的 PHP 版本 8.2.*、8.3.31 之前的 8.3.*、8... | 2026-05-10 |
| CVE-2026-7259 | 中 | 6.5 | PHP | In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.... 在 8.2.31 之前的 PHP 版本 8.2.*、8.3.31 之前的 8.3.*、8... | 2026-05-10 |
| CVE-2026-7258 | 高 | 7.5 | PHP | In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.... 在 8.2.31 之前的 PHP 版本 8.2.*、8.3.31 之前的 8.3.*、8... | 2026-05-10 |
| CVE-2026-6735 | 中 | 6.1 | PHP | In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.... 在 PHP 8.2.31 之前的版本、8.3.31 之前的 8.3.*、8.4.21... | 2026-05-10 |
| CVE-2026-6722 | 嚴重 | 9.8 | Apache PHP | In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.... 在 8.2.31 之前的 PHP 版本 8.2.*、8.3.31 之前的 8.3.*、8... | 2026-05-10 |
| CVE-2025-14179 | 嚴重 | 9.8 | PHP | In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.... 在 8.2.31 之前的 PHP 版本 8.2.*、8.3.31 之前的 8.3.*、8... | 2026-05-10 |
| CVE-2026-42605 | 高 | 8.8 | PHP | AzuraCast is a self-hosted, all-in-one web radio management suite. Prior to... AzuraCast 是一款自架式的一體式網路無線電管理套件。在版... | 2026-05-09 |
| CVE-2026-42569 | 嚴重 | 9.4 | PHP | phpVMS is a PHP application to run and simulate an airline. Prior to versio... phpVMS 是一個用於運行和模擬航空公司的 PHP 應用程式。在... | 2026-05-09 |
| CVE-2026-8209 | N/A | - | PHP | Gibbon versions before v30.0.01 are affected by a path traversal vulnerabil... v30.0.01 之前的 Gibbon 版本受到路徑遍歷漏洞的影響,嘗試... | 2026-05-09 |
| CVE-2026-8208 | N/A | - | PHP | Gibbon versions before v30.0.01 are affected by a local file inclusion vuln... v30.0.01 之前的 Gibbon 版本受到本地檔案包含漏洞的影響,... | 2026-05-09 |
| CVE-2026-42224 | 高 | 7.6 | PHP | ipl/web is a set of common web components for php projects. Prior to versio... ipl/web 是一組用於 php 專案的通用 Web 元件。在 0.13.1... | 2026-05-08 |
| CVE-2026-41517 | N/A | - | PHP | Emlog is an open source website building system. Prior to version 2.6.11, i... Emlog 是一個開源網站建置系統。在版本 2.6.11 之前,不安... | 2026-05-08 |
| CVE-2026-42028 | 中 | 5.3 | PHP | novaGallery is a php image gallery. Prior to version 2.1.1, a path traversa... novaGallery 是一個 php 圖片庫。在2.1.1版本之前,novaGal... | 2026-05-08 |
| CVE-2026-41887 | 中 | 4.9 | PHP | Flarum is open-source forum software. Prior to versions 1.8.16 and 2.0.0-rc... Flarum 是开源论坛软件。在版本 1.8.16 和 2.0.0-rc.1 之前... | 2026-05-08 |
| CVE-2026-43420 | N/A | - | Linux OS PHP | In the Linux kernel, the following vulnerability has been resolved: ceph:... 在Linux核心中,以下漏洞已解決: ceph:修正非同步取消連... | 2026-05-08 |
| CVE-2026-41576 | 高 | 7.1 | PHP | Brave CMS is an open-source CMS. Prior to commit 6c56603, the contact form... Brave CMS 是一款開源 CMS。在提交 6c56603 之前,聯絡表單... | 2026-05-08 |
| CVE-2026-41570 | 高 | 7.8 | PHP | PHPUnit is a testing framework for PHP. In versions 12.5.21 and 13.1.5, PHP... PHPUnit 是一個 PHP 測試框架。在版本 12.5.21 和 13.1.5... | 2026-05-08 |
| CVE-2025-67486 | 高 | 7.2 | PHP | Dolibarr is an enterprise resource planning (ERP) and customer relationship... Dolibarr 是一個企業資源規劃 (ERP) 和客戶關係管理 (CRM)... | 2026-05-08 |
| CVE-2026-5127 | 高 | 8.8 | PHP | The User Frontend: AI Powered Frontend Posting, User Directory, Profile, Me... 使用者前端:適用於 WordPress 的 AI 支援的前端發文、使用... | 2026-05-08 |
| CVE-2025-69691 | 嚴重 | 9.9 | PHP | Netgate pfSense CE 2.8.0 allows code execution in the XMLRPC API via pfsens... Netgate pfSense CE 2.8.0 允許透過 pfsense.exec_php 在 X... | 2026-05-08 |
| CVE-2025-69690 | 嚴重 | 9.1 | PHP | Netgate pfSense CE 2.7.2 allows code execution by using the module installe... Netgate pfSense CE 2.7.2 允許使用帶有備份檔案的模組安裝... | 2026-05-08 |
| CVE-2025-67887 | 嚴重 | 9.8 | PHP | 1C-Bitrix through 25.100.500 allows Remote Code Execution because an actor... 1C-Bitrix 到 25.100.500 允許遠端執行程式碼,因為具有翻... | 2026-05-08 |
| CVE-2025-67886 | 中 | 6.3 | PHP | Bitrix24 through 25.100.300 allows Remote Code Execution because an actor w... Bitrix24 到 25.100.300 允許遠端執行程式碼,因為具有翻譯... | 2026-05-08 |
| CVE-2024-33288 | 高 | 7.3 | PHP | Prison Management System Using PHP v1.0 was discovered to contain a SQL inj... 使用 PHP v1.0 的監獄管理系統被發現包含透過管理員登入頁... | 2026-05-08 |
| CVE-2026-44298 | 中 | 4.1 | PHP | Kimai is an open-source time tracking application. From version 2.32.0 to b... Kimai 是一個開源時間追蹤應用程式。從2.32.0版本到2.56.0... | 2026-05-08 |
| CVE-2026-41906 | 高 | 7.1 | PHP | FreeScout is a free help desk and shared inbox built with PHP's Laravel fra... FreeScout 是一個使用 PHP 的 Laravel 框架建立的免費幫助... | 2026-05-07 |
| CVE-2026-41905 | 高 | 7.7 | PHP | FreeScout is a free help desk and shared inbox built with PHP's Laravel fra... FreeScout 是一個使用 PHP 的 Laravel 框架建立的免費幫助... | 2026-05-07 |
| CVE-2026-41904 | 高 | 7.6 | PHP | FreeScout is a free help desk and shared inbox built with PHP's Laravel fra... FreeScout 是一個使用 PHP 的 Laravel 框架建立的免費幫助... | 2026-05-07 |
| CVE-2026-41903 | 中 | 5.4 | PHP | FreeScout is a free help desk and shared inbox built with PHP's Laravel fra... FreeScout 是一個使用 PHP 的 Laravel 框架建立的免費幫助... | 2026-05-07 |
| CVE-2026-41902 | 嚴重 | 9.1 | PHP | FreeScout is a free help desk and shared inbox built with PHP's Laravel fra... FreeScout 是一個使用 PHP 的 Laravel 框架建立的免費幫助... | 2026-05-07 |
| CVE-2026-36388 | 中 | 5.4 | PHP | A Cross-Site Scripting (XSS) vulnerability was found in PHPGurukal Hospital... PHPGurukal 医院管理系统 v4.0 的 /hospital/hms/edit-prof... | 2026-05-07 |
| CVE-2026-41143 | 高 | 8.8 | PHP | YesWiki is a wiki system written in PHP. Prior to version 4.6.1, YesWiki ba... YesWiki是一個用PHP寫的wiki系統。在版本4.6.1之前,YesWik... | 2026-05-07 |
| CVE-2026-41587 | N/A | - | PHP | CI4MS is a CodeIgniter 4-based CMS skeleton that delivers a production-read... CI4MS 是基於 CodeIgniter 4 的 CMS 框架,可提供具有 RBAC... | 2026-05-07 |
| CVE-2026-41203 | N/A | - | PHP | CI4MS is a CodeIgniter 4-based CMS skeleton that delivers a production-read... CI4MS 是基於 CodeIgniter 4 的 CMS 框架,可提供具有 RBAC... | 2026-05-07 |
| CVE-2026-41202 | N/A | - | PHP | CI4MS is a CodeIgniter 4-based CMS skeleton that delivers a production-read... CI4MS 是基於 CodeIgniter 4 的 CMS 框架,可提供具有 RBAC... | 2026-05-07 |
| CVE-2026-40296 | 中 | 5.4 | PHP | PhpSpreadsheet is a pure PHP library for reading and writing spreadsheet fi... PhpSpreadsheet 是一個用於讀取和寫入電子表格檔案的純 PHP... | 2026-05-06 |
| CVE-2026-41938 | 高 | 8.8 | PHP | Vvveb before version 1.0.8.2 contains an unrestricted file upload vulnerabi... 1.0.8.2 先前版本的 Vvveb 在媒體上傳處理程序中包含一個不... | 2026-05-06 |
| CVE-2026-41936 | 高 | 8.1 | PHP | Vvveb before version 1.0.8.2 contains an XML external entity (XXE) injectio... 1.0.8.2 先前版本的 Vvveb 在管理工具/匯入功能中包含 XML... | 2026-05-06 |
| CVE-2026-41934 | 高 | 8.8 | PHP | Vvveb before version 1.0.8.2 contains an authenticated remote code executio... 1.0.8.2 先前版本的 Vvveb 在管理程式碼編輯器中包含一個經... | 2026-05-06 |
| CVE-2026-41930 | 嚴重 | 9.8 | Apache PHP | Vvveb before version 1.0.8.2 contains a hard-coded credentials vulnerabilit... 1.0.8.2 版本之前的 Vvveb 在其 docker-compose-apache.yam... | 2026-05-06 |
| CVE-2026-35453 | 中 | 5.4 | PHP | PhpSpreadsheet is a library for reading and writing spreadsheet files. In v... PhpSpreadsheet 是一個用於讀取和寫入電子表格檔案的函式庫... | 2026-05-05 |
| CVE-2026-34084 | 嚴重 | 9.8 | PHP | PhpSpreadsheet is a library for reading and writing spreadsheet files. In v... PhpSpreadsheet 是一個用於讀取和寫入電子表格檔案的函式庫... | 2026-05-05 |
| CVE-2026-6261 | 高 | 8.8 | PHP | The Betheme theme for WordPress is vulnerable to Arbitrary File Upload in v... WordPress 的 Betheme 主題在 28.4 及以下版本中容易受到任... | 2026-05-05 |
| CVE-2026-5957 | 中 | 6.5 | PHP | The EmailKit plugin for WordPress is vulnerable to Arbitrary File Read in a... WordPress 的 EmailKit 外掛程式在 1.6.5 及之前的所有版本... | 2026-05-05 |
| CVE-2026-25863 | 高 | 7.5 | PHP | Conditional Fields for Contact Form 7 WordPress plugin through version 2.6.... 聯絡表單 7 WordPress 外掛程式的條件欄位透過版本 2.6.7... | 2026-05-04 |
| CVE-2026-29199 | 高 | 8.1 | PHP | phpBB before 3.3.16 is vulnerable to Host Header Injection that can lead to... 3.3.16 之前的 phpBB 容易受到主機標頭注入的攻擊,導緻密... | 2026-05-04 |
| CVE-2026-7716 | 中 | 6.3 | PHP | A vulnerability was found in code-projects Gym Management System In PHP and... PHP 和 Windows NT 1.0 中的程式碼專案 Gym Management Sys... | 2026-05-04 |
| CVE-2026-7647 | 高 | 8.1 | PHP | The Profile Builder Pro plugin for WordPress is vulnerable to PHP Object In... WordPress 的 Profile Builder Pro 外掛程式在 3.14.5 及之... | 2026-05-02 |
| CVE-2026-7458 | 嚴重 | 9.8 | PHP | The User Verification by PickPlugins plugin for WordPress is vulnerable to... WordPress 的 PickPlugins 外掛程式使用者驗證在 2.0.46 及... | 2026-05-02 |
| CVE-2026-37552 | 高 | 8.4 | PHP | Unsafe deserialization vulnerability in MixPHP Framework 2.x thru 2.2.17. T... MixPHP Framework 2.x 至 2.2.17 中存在不安全反序列化漏洞... | 2026-05-01 |
| CVE-2026-3772 | 高 | 8.8 | PHP | The WP Editor plugin for WordPress is vulnerable to Cross-Site Request Forg... WordPress 的 WP 編輯器外掛程式在 1.2.9.2 及之前的所有版... | 2026-05-01 |
| CVE-2026-7567 | 嚴重 | 9.8 | PHP | The Temporary Login plugin for WordPress is vulnerable to Authentication By... WordPress 的暫時登入外掛程式在 1.0.0 及以下版本中容易受... | 2026-05-01 |
| CVE-2022-50993 | 嚴重 | 9.8 | PHP | Weaver (Fanwei) E-office versions prior to 10.0_20221201 contain an unauthe... Weaver (Fanwei) E-office 10.0_20221201 先前的版本在 Off... | 2026-04-30 |
| CVE-2026-6498 | 中 | 5.3 | PHP | The Five Star Restaurant Reservations plugin for WordPress is vulnerable to... WordPress 的五星級餐廳預訂外掛程式在 2.7.16 及之前的版... | 2026-04-30 |
| CVE-2026-34965 | 高 | 8.8 | PHP | Cockpit CMS contains an authenticated remote code execution vulnerability i... Cockpit CMS 在 /cockpit/collections/save_collection 端... | 2026-04-29 |
| CVE-2026-27760 | 高 | 8.1 | PHP | OpenCATS prior to commit 3002a29 contains a PHP code injection vulnerabilit... 提交 3002a29 之前的 OpenCATS 在安裝程式 AJAX 端點中包含... | 2026-04-28 |
| CVE-2025-12550 | 高 | 8.1 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... jwsthemes OchaHouse ochahouse 中 PHP 程式中 Include/Req... | 2026-01-08 |
| CVE-2025-12549 | 高 | 8.1 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... magentech Rozy - Flower Shop 中的 PHP 程式中的 Include/... | 2026-01-08 |
| CVE-2026-21875 | 嚴重 | 9.8 | PHP | ClipBucket v5 is an open source video sharing platform. Versions 5.5.2-#187... ClipBucket v5 是一個開源影片分享平台。 5.5.2-#187 及以... | 2026-01-08 |
| CVE-2026-21857 | 中 | 6.5 | PHP | REDAXO is a PHP-based content management system. Prior to version 5.20.2, a... REDAXO 是一個以 PHP 為基礎的內容管理系統。在版本 5.20.2... | 2026-01-07 |
| CVE-2025-69081 | 高 | 8.1 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... PHP 程式中包含/要求語句的檔案名稱控制不當(「PHP 遠端檔... | 2026-01-07 |
| CVE-2025-69080 | 高 | 8.1 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... JanStudio Gecko 中的 PHP 程式中包含/要求語句的檔案名稱... | 2026-01-07 |
| CVE-2025-14842 | 中 | 6.1 | PHP | The Drag and Drop Multiple File Upload – Contact Form 7 plugin for WordPres... WordPress 的拖放多個檔案上傳 – 聯絡表單 7 外掛程式在 1.... | 2026-01-07 |
| CVE-2025-14118 | 中 | 6.1 | PHP | The Starred Review plugin for WordPress is vulnerable to Reflected Cross-Si... 由于输入清理和输出转义不足,WordPress 的加星评论插件在... | 2026-01-07 |
| CVE-2025-32304 | 高 | 8.1 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... Mojoomla WPCHURCH 中的 PHP 程式中包含/要求語句的檔案名... | 2026-01-06 |
| CVE-2025-69356 | 高 | 7.5 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... CodexThemes 中的 PHP 程式中 Include/Require 語句的檔案... | 2026-01-06 |
| CVE-2025-69342 | 高 | 7.5 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... VanKarWai Calafate 中的 PHP 程式中包含/要求語句的檔案名... | 2026-01-06 |
| CVE-2025-69083 | 高 | 8.1 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... Elated-Themes Frappé frappe 中的 PHP 程式中包含/要求語... | 2026-01-06 |
| CVE-2025-69086 | 高 | 8.1 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... jwsthemes 中的 PHP 程式中 Include/Require 語句的檔案名... | 2026-01-06 |
| CVE-2020-36913 | 中 | 5.3 | PHP | All-Dynamics Software enlogic:show 2.0.2 contains a session fixation vulner... All-Dynamics Software enlogic:show 2.0.2 包含一個會話固... | 2026-01-06 |
| CVE-2025-69087 | 高 | 8.1 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... jwsthemes FreeAgent freeagent 中的 PHP 程式中 Include/R... | 2026-01-05 |
| CVE-2026-0547 | 中 | 6.3 | PHP | A vulnerability was found in PHPGurukul Online Course Registration up to 3.... PHPGurukul 線上課程註冊(最高 3.1)發現漏洞。此問題影響... | 2026-01-02 |
| CVE-2025-15406 | 中 | 6.3 | PHP | A flaw has been found in PHPGurukul Online Course Registration up to 3.1. T... PHPGurukul 線上課程已註冊至 3.1 版本發現了一個缺陷。這... | 2026-01-01 |
| CVE-2025-15405 | 中 | 4.3 | PHP | A vulnerability was detected in PHPEMS up to 11.0. The impacted element is... PHPEMS 11.0 版本中偵測到漏洞。受影響的元素是未知函數。... | 2026-01-01 |
| CVE-2025-15390 | 中 | 6.3 | PHP | A security flaw has been discovered in PHPGurukul Small CRM 4.0. This impac... PHPGurukul Small CRM 4.0 中發現了一個安全漏洞。這會影響... | 2025-12-31 |
| CVE-2025-62753 | 高 | 7.5 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... MadrasThemes MAS Videos masvideos 中 PHP 程式中包含/要... | 2025-12-30 |
| CVE-2025-15263 | 高 | 7.3 | PHP | A weakness has been identified in BiggiDroid Simple PHP CMS 1.0. Affected i... BiggiDroid Simple PHP CMS 1.0 中已發現一個弱點。受影響... | 2025-12-30 |
| CVE-2025-15262 | 中 | 4.7 | PHP | A security flaw has been discovered in BiggiDroid Simple PHP CMS 1.0. This... BiggiDroid Simple PHP CMS 1.0 中發現了一個安全漏洞。這... | 2025-12-30 |
| CVE-2025-67746 | 中 | 4.3 | PHP | Composer is a dependency manager for PHP. In versions on the 2.x branch pri... Composer 是 PHP 的依賴管理器。在 2.2.26 和 2.9.3 之前的... | 2025-12-30 |
| CVE-2025-14509 | 高 | 7.2 | PHP | The Lucky Wheel for WooCommerce – Spin a Sale plugin for WordPress is vulne... WooCommerce 的幸運輪 – WordPress 的 Spin a Sale 外掛程... | 2025-12-30 |
| CVE-2025-69034 | 高 | 8.1 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... Mikado-Themes 中的 PHP 程式中包含/要求語句的檔案名稱控... | 2025-12-30 |
| CVE-2025-68996 | 高 | 7.5 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... WebCodingPlace Responsive Posts Carousel Pro 響應式貼文... | 2025-12-30 |
| CVE-2025-68985 | 高 | 7.5 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... PHP 程式中的 Include/Require 語句的檔案名稱控制不當(「... | 2025-12-30 |
| CVE-2025-68984 | 高 | 7.5 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... PHP 程式中包含/要求語句的檔案名稱控制不當(「PHP 遠端檔... | 2025-12-30 |
| CVE-2025-68987 | 高 | 7.5 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... Edge-Themes Cinerama 中的 PHP 程式中包含/要求語句的檔案... | 2025-12-30 |
| CVE-2025-68983 | 高 | 7.5 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... 對 PHP 程式中包含/要求語句的檔案名稱控制不當(「PHP 遠... | 2025-12-30 |
| CVE-2025-68974 | 中 | 6.6 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... miniOrange WordPress 社群登入和註冊中的 PHP 程式中包含/... | 2025-12-30 |
| CVE-2025-15244 | 低 | 3.7 | PHP | A vulnerability has been found in PHPEMS up to 11.0. This impacts an unknow... PHPEMS 至 11.0 版本中已發現漏洞。這會影響元件購買請求處... | 2025-12-30 |
| CVE-2025-15242 | 低 | 3.1 | PHP | A vulnerability was detected in PHPEMS up to 11.0. The impacted element is... PHPEMS 11.0 版本中偵測到漏洞。受影響的元素是組件優惠券... | 2025-12-30 |
| CVE-2025-68870 | 高 | 7.5 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... reDim GmbH CookieHint WP cookiehint-wp 中 PHP 程式中包... | 2025-12-29 |
| CVE-2025-69200 | 高 | 7.5 | PHP | phpMyFAQ is an open source FAQ web application. In versions prior to 4.0.16... phpMyFAQ 是一個開源常見問題解答 Web 應用程式。在 4.0.16... | 2025-12-29 |
| CVE-2025-68951 | 中 | 5.4 | PHP | phpMyFAQ is an open source FAQ web application. Versions 4.0.14 and 4.0.15... phpMyFAQ 是一個開源常見問題解答 Web 應用程式。版本 4.0.... | 2025-12-29 |
| CVE-2025-68877 | 高 | 7.5 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... cedcommerce 中 PHP 程式中包含/要求語句的檔案名稱控制不... | 2025-12-29 |
| CVE-2025-15169 | 中 | 4.7 | PHP | A weakness has been identified in BiggiDroid Simple PHP CMS 1.0. Affected b... BiggiDroid Simple PHP CMS 1.0 中已發現一個弱點。受此問... | 2025-12-29 |
| CVE-2025-15142 | 高 | 7.3 | PHP | A vulnerability was identified in 9786 phpok3w up to 901d96a06809fb28b17f3a... 在 9786 phpok3w 至 901d96a06809fb28b17f3a4362c59e70411c... | 2025-12-28 |
| CVE-2025-14178 | 中 | 6.5 | PHP | In PHP versions:8.1.* before 8.1.34, 8.2.* before 8.2.30, 8.3.* before 8.3.... 在 PHP 版本中:8.1.34 之前的 8.1.*、8.2.30 之前的 8.2.*... | 2025-12-27 |
| CVE-2025-14177 | 高 | 7.5 | PHP | In PHP versions:8.1.* before 8.1.34, 8.2.* before 8.2.30, 8.3.* before 8.3.... 在 PHP 版本中:8.1.34 之前的 8.1.*、8.2.30 之前的 8.2.*... | 2025-12-27 |
| CVE-2025-14180 | 高 | 7.5 | PHP | In PHP versions 8.1.* before 8.1.34, 8.2.* before 8.2.30, 8.3.* before 8.3.... 在 8.1.34 之前的 PHP 版本 8.1.*、8.2.30 之前的 8.2.*、8... | 2025-12-27 |
| CVE-2025-68563 | 嚴重 | 9.8 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... PHP 程式中包含/要求語句的檔案名稱控制不當(「PHP 遠端檔... | 2025-12-24 |
| CVE-2025-68540 | 嚴重 | 9.8 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... PHP 程式中包含/要求語句的檔案名稱控制不當(「PHP 遠端檔... | 2025-12-24 |
| CVE-2025-68537 | 嚴重 | 9.8 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... PHP 程式中包含/要求語句的檔案名稱控制不當(「PHP 遠端檔... | 2025-12-24 |
| CVE-2025-68530 | 嚴重 | 9.8 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... PHP 程式中包含/要求語句的檔案名稱控制不當(「PHP 遠端檔... | 2025-12-24 |
| CVE-2025-68506 | 嚴重 | 9.8 | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... 對 PHP 程式中的 Include/Require 語句的檔案名稱控制不當... | 2025-12-24 |
| CVE-2025-13407 | 中 | 6.8 | PHP | The Gravity Forms WordPress plugin before 2.9.23.1 does not properly preven... 2.9.23.1之前的Gravity Forms WordPress外掛無法正確阻止用... | 2025-12-24 |
| CVE-2025-13773 | 嚴重 | 9.8 | PHP | The Print Invoice & Delivery Notes for WooCommerce plugin for WordPress is... WordPress 的 WooCommerce 外掛程式的列印發票和送貨單在 5... | 2025-12-24 |
| CVE-2021-47736 | 高 | 7.2 | PHP | CMSimple_XH 1.7.4 contains an authenticated remote code execution vulnerabi... CMSimple_XH 1.7.4 在內容編輯功能中包含一個經過驗證的遠... | 2025-12-23 |
| CVE-2021-47735 | 高 | 8.8 | PHP | CMSimple 5.4 contains an authenticated remote code execution vulnerability... CMSimple 5.4 包含一個經過驗證的遠端程式碼執行漏洞,允許... | 2025-12-23 |
| CVE-2021-47734 | 高 | 7.8 | PHP | CMSimple 5.4 contains an authenticated local file inclusion vulnerability t... CMSimple 5.4 包含一個經過驗證的本機檔案包含漏洞,允許遠... | 2025-12-23 |
| CVE-2025-68560 | N/A | - | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... CodexThemes TheGem 主題元素(適用於 Elementor)thegem-e... | 2025-12-23 |
| CVE-2025-68546 | N/A | - | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... PHP 程式中的 Include/Require 語句的檔案名稱控制不當(「... | 2025-12-23 |
| CVE-2025-68544 | N/A | - | PHP | Improper Control of Filename for Include/Require Statement in PHP Program (... PHP 程式中包含/要求語句的檔案名稱控制不當(「PHP 遠端檔... | 2025-12-23 |
| CVE 編號 | 嚴重性 | 分數 | 產品 | 描述 | 發布日期 |
|---|---|---|---|---|---|
| CVE-2026-6093 | N/A | - | MSSQL | Corteza contains a SQL injection vulnerability in its Microsoft SQL Server... 當按元欄位過濾 Compose 記錄時,Corteza 的 Microsoft SQL... | 2026-05-11 |
| CVE-2026-33375 | 中 | 6.5 | MSSQL | The Grafana MSSQL data source plugin contains a logic flaw that allows a lo... Grafana MSSQL 資料來源外掛程式包含一個邏輯缺陷,允許低... | 2026-03-26 |
| CVE-2019-25598 | 中 | 6.2 | MSSQL | HeidiSQL Portable 10.1.0.5464 contains a denial of service vulnerability th... HeidiSQL Portable 10.1.0.5464 包含拒絕服務漏洞,允許本... | 2026-03-22 |
| CVE-2025-58112 | 高 | 8.8 | MSSQL | Microsoft Dynamics 365 Customer Engagement (on-premises) 1612 (9.0.2.3034)... Microsoft Dynamics 365 Customer Engagement (on-premises... | 2026-03-18 |
| CVE-2026-32628 | 高 | 8.8 | MySQL MSSQL | AnythingLLM is an application that turns pieces of content into context tha... AnythingLLM 是一個將內容片段轉換為上下文的應用程序,任... | 2026-03-16 |
| CVE-2025-15560 | 高 | 8.8 | MSSQL | An authenticated attacker with minimal permissions can exploit a SQL inject... 具有最小權限的經過驗證的攻擊者可以利用 WorkTime 伺服器... | 2026-02-19 |
| CVE-2025-59095 | N/A | - | MSSQL | The program libraries (DLL) and binaries used by exos 9300 contain multiple... exos 9300 所使用的程式庫 (DLL) 和二進位檔案包含多個硬編... | 2026-01-26 |
| CVE-2025-59093 | N/A | - | MSSQL | Exos 9300 instances are using a randomly generated database password to con... Exos 9300 執行個體使用隨機產生的資料庫密碼連接到設定的... | 2026-01-26 |
| CVE 編號 | 嚴重性 | 分數 | 產品 | 描述 | 發布日期 |
|---|---|---|---|---|---|
| CVE-2026-27886 | 高 | 7.5 | Oracle | Strapi is an open source headless content management system. Strapi version... Strapi 是一個開源無頭內容管理系統。從 4.0.0 開始到 5.37... | 2026-05-14 |
| CVE-2026-29080 | 高 | 8.8 | MySQL Oracle | A SQL injection vulnerability in `FilterEngine.create_sqla_query()` allows... FilterEngine.create_sqla_query() 中的 SQL 注入漏洞允許... | 2026-05-06 |
| CVE-2026-23927 | N/A | - | Oracle | A user able to connect to Agent 2 can inject an Oracle TNS connection strin... 能夠連接到代理 2 的使用者可以透過「service」參數注入 Or... | 2026-05-06 |
| CVE-2026-42233 | 嚴重 | 9.8 | Oracle | n8n is an open source workflow automation platform. Prior to versions 1.123... n8n 是一個開源工作流程自動化平台。在版本 1.123.32、2.17... | 2026-05-04 |
| CVE-2026-35229 | 高 | 7.5 | Oracle | Vulnerability in the Java VM component of Oracle Database Server. Supporte... Oracle 数据库服务器的 Java VM 组件中的漏洞。 受影响的... | 2026-04-21 |
| CVE-2026-34315 | 中 | 6.5 | Oracle | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middle... | 2026-04-21 |
| CVE-2026-34312 | 低 | 2.4 | Oracle | Vulnerability in the RDBMS component of Oracle Database Server. Supported... Oracle 数据库服务器的 RDBMS 组件中的漏洞。 受影響的受... | 2026-04-21 |
| CVE-2026-34305 | 高 | 7.5 | Oracle | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middle... Oracle Fusion Middleware(元件:Web 服務)的 Oracle Web... | 2026-04-21 |
| CVE-2026-34292 | 高 | 7.2 | Oracle | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middle... Oracle Fusion Middleware(元件:Core)的 Oracle WebLogi... | 2026-04-21 |
| CVE-2026-22021 | 中 | 5.3 | Oracle | Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM... Oracle Java SE、Oracle GraalVM for JDK、Oracle Java SE... | 2026-04-21 |
| CVE-2026-22016 | 高 | 7.5 | Oracle | Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM... Oracle Java SE、Oracle GraalVM for JDK、Oracle Java SE... | 2026-04-21 |
| CVE-2026-22018 | 低 | 3.7 | Oracle | Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM... Oracle Java SE、Oracle GraalVM for JDK、Oracle Java SE... | 2026-04-21 |
| CVE-2026-22013 | 中 | 5.3 | Oracle | Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM... Oracle Java SE、Oracle GraalVM for JDK、Oracle Java SE... | 2026-04-21 |
| CVE-2026-22007 | 低 | 2.9 | Oracle | Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM... Oracle Java SE、Oracle GraalVM for JDK、Oracle Java SE... | 2026-04-21 |
| CVE-2026-22008 | 低 | 3.7 | Oracle | Vulnerability in Oracle Java SE (component: Libraries). The supported ver... Oracle Java SE 中的漏洞(元件:庫)。 受影響的支援版... | 2026-04-21 |
| CVE-2026-22003 | 中 | 6 | Oracle | Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition prod... Oracle Java SE、Oracle Java SE 的 Oracle GraalVM 企業版... | 2026-04-21 |
| CVE-2026-21999 | 中 | 5.3 | Oracle | Vulnerability in the XML Database component of Oracle Database Server. Sup... Oracle 資料庫伺服器的 XML 資料庫元件中的漏洞。 受影響... | 2026-04-21 |
| CVE-2026-5234 | 中 | 5.3 | Oracle | The LatePoint plugin for WordPress is vulnerable to Insecure Direct Object... WordPress 的 LatePoint 外掛程式在 5.3.2 及之前的所有版... | 2026-04-17 |
| CVE-2026-3968 | 中 | 6.3 | Oracle | A vulnerability has been found in AutohomeCorp frostmourne up to 1.0. This... AutohomeCorp 霜之哀傷中已發現高達 1.0 的漏洞。這會影響... | 2026-03-12 |
| CVE-2026-21975 | 中 | 4.5 | Oracle | Vulnerability in the Java VM component of Oracle Database Server. Supporte... Oracle 資料庫伺服器的 Java VM 元件中的漏洞。 受影響的... | 2026-01-20 |
| CVE-2026-21962 | 嚴重 | 10 | Apache Oracle | Vulnerability in the Oracle HTTP Server, Oracle Weblogic Server Proxy Plug-... Oracle HTTP Server、Oracle Fusion Middleware 的 Oracle... | 2026-01-20 |
| CVE-2026-21960 | 中 | 6.5 | Oracle | Vulnerability in the Oracle Applications DBA product of Oracle E-Business S... Oracle E-Business Suite(元件:Java utils)的 Oracle 應... | 2026-01-20 |
| CVE-2026-21945 | 高 | 7.5 | Oracle | Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM... Oracle Java SE、Oracle GraalVM for JDK、Oracle Java SE... | 2026-01-20 |
| CVE-2026-21947 | 低 | 3.1 | Oracle | Vulnerability in Oracle Java SE (component: JavaFX). Supported versions th... Oracle Java SE(元件:JavaFX)中的漏洞。 受影響的支援... | 2026-01-20 |
| CVE-2026-21939 | 高 | 7 | Oracle | Vulnerability in the SQLcl component of Oracle Database Server. Supported... Oracle 資料庫伺服器的 SQLcl 元件中的漏洞。 受影響的受... | 2026-01-20 |
| CVE-2026-21932 | 高 | 7.4 | Oracle | Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM... Oracle Java SE、Oracle GraalVM for JDK、Oracle Java SE... | 2026-01-20 |
| CVE-2026-21933 | 中 | 6.1 | Oracle | Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM... Oracle Java SE、Oracle GraalVM for JDK、Oracle Java SE... | 2026-01-20 |
| CVE-2026-21925 | 中 | 4.8 | Oracle | Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM... Oracle Java SE、Oracle GraalVM for JDK、Oracle Java SE... | 2026-01-20 |
| CVE 編號 | 嚴重性 | 分數 | 產品 | 描述 | 發布日期 |
|---|---|---|---|---|---|
| CVE-2026-9126 | 高 | 8.8 | Chrome | Use after free in DOM in Google Chrome on prior to 148.0.7778.179 allowed a... 在 148.0.7778.179 之前的 Google Chrome 中,在 DOM 中使... | 2026-05-20 |
| CVE-2026-9123 | 高 | 7.5 | Linux OS Chrome | Heap buffer overflow in Chromecast in Google Chrome on Android, Linux, Chro... Android、Linux、148.0.7778.179 之前的 ChromeOS 上的 Goo... | 2026-05-20 |
| CVE-2026-9124 | 中 | 5.3 | Chrome | Insufficient validation of untrusted input in Input in Google Chrome on pri... 在 148.0.7778.179 之前的版本中,Google Chrome 中的「輸... | 2026-05-20 |
| CVE-2026-9121 | 高 | 8.8 | Chrome | Out of bounds read in GPU in Google Chrome on prior to 148.0.7778.179 allow... 在 148.0.7778.179 之前的 Google Chrome 中,GPU 中的越界... | 2026-05-20 |
| CVE-2026-9122 | 中 | 6.5 | Chrome | Out of bounds read in GPU in Google Chrome on Mac prior to 148.0.7778.179 a... 148.0.7778.179 之前的 Mac 上的 Google Chrome 中的 GPU... | 2026-05-20 |
| CVE-2026-9117 | 高 | 7.5 | Linux OS Chrome | Type Confusion in GFX in Google Chrome on Linux, ChromeOS prior to 148.0.77... Linux 上的 Google Chrome 中的 GFX 中存在類型混淆,148.0... | 2026-05-20 |
| CVE-2026-9118 | 高 | 8.8 | Chrome | Use after free in XR in Google Chrome on Windows prior to 148.0.7778.179 al... 在 148.0.7778.179 之前的 Windows 上的 Google Chrome 中... | 2026-05-20 |
| CVE-2026-9119 | 高 | 8.8 | Chrome | Heap buffer overflow in WebRTC in Google Chrome on prior to 148.0.7778.179... 148.0.7778.179 之前的 Google Chrome 中的 WebRTC 中的堆... | 2026-05-20 |
| CVE-2026-9120 | 高 | 8.8 | Chrome | Use after free in WebRTC in Google Chrome prior to 148.0.7778.179 allowed a... 148.0.7778.179 之前的 Google Chrome 中的 WebRTC 中的釋... | 2026-05-20 |
| CVE-2026-9113 | 中 | 4.3 | Chrome | Out of bounds read in GPU in Google Chrome on Mac prior to 148.0.7778.179 a... 148.0.7778.179 之前的 Mac 版 Google Chrome 中的 GPU 越... | 2026-05-20 |
| CVE-2026-9114 | 高 | 8.8 | Chrome | Use after free in QUIC in Google Chrome on prior to 148.0.7778.179 allowed... 在 148.0.7778.179 之前的 Google Chrome 中使用 QUIC 中的... | 2026-05-20 |
| CVE-2026-9115 | 中 | 4.3 | Chrome | Insufficient policy enforcement in Service Worker in Google Chrome on prior... 148.0.7778.179 之前的 Google Chrome 中 Service Worker... | 2026-05-20 |
| CVE-2026-9116 | 中 | 4.3 | Chrome | Insufficient policy enforcement in ServiceWorker in Google Chrome on prior... 148.0.7778.179 之前的 Google Chrome 中 ServiceWorker 中... | 2026-05-20 |
| CVE-2026-9112 | 高 | 8.8 | Chrome | Use after free in GPU in Google Chrome on Windows prior to 148.0.7778.179 a... 148.0.7778.179 之前的 Windows 上的 Google Chrome 中的 G... | 2026-05-20 |
| CVE-2026-9110 | 中 | 4.2 | Chrome | Inappropriate implementation in UI in Google Chrome on Windows prior to 148... 148.0.7778.179 之前的 Windows 上的 Google Chrome 中的 U... | 2026-05-20 |
| CVE-2026-9111 | 高 | 8.8 | Linux OS Chrome | Use after free in WebRTC in Google Chrome on Linux prior to 148.0.7778.179... 在 148.0.7778.179 之前的 Linux 上的 Google Chrome 中的... | 2026-05-20 |
| CVE-2026-8587 | 高 | 8.8 | Chrome | Use after free in Extensions in Google Chrome on Mac prior to 148.0.7778.16... 148.0.7778.168 之前的 Mac 版 Google Chrome 擴充功能中的... | 2026-05-14 |
| CVE-2026-8586 | 中 | 5.5 | Chrome | Inappropriate implementation in Chromoting in Google Chrome prior to 148.0.... 148.0.7778.168 之前的 Google Chrome 中的 Chromoting 實... | 2026-05-14 |
| CVE-2026-8585 | 高 | 7.5 | Chrome | Inappropriate implementation in Media in Google Chrome on iOS prior to 148.... 148.0.7778.168 之前的 iOS 版 Google Chrome 中的媒體中的... | 2026-05-14 |
| CVE-2026-8584 | 中 | 4.2 | Chrome | Inappropriate implementation in Views in Google Chrome on iOS prior to 148.... 148.0.7778.168 之前的 iOS 版 Google Chrome 中的視圖實作... | 2026-05-14 |
| CVE-2026-8583 | 中 | 5.3 | Chrome | Insufficient policy enforcement in WebXR in Google Chrome on Android prior... 148.0.7778.168 之前的 Android 版 Google Chrome 中的 Web... | 2026-05-14 |
| CVE-2026-8582 | 中 | 5.3 | Chrome | Object lifecycle issue in Dawn in Google Chrome prior to 148.0.7778.168 all... 148.0.7778.168 之前的 Google Chrome 中的 Dawn 中的物件... | 2026-05-14 |
| CVE-2026-8581 | 高 | 8.8 | Chrome | Use after free in GPU in Google Chrome prior to 148.0.7778.168 allowed a re... 148.0.7778.168 之前的 Google Chrome 中的 GPU 釋放後使用... | 2026-05-14 |
| CVE-2026-8580 | 嚴重 | 9.6 | Chrome | Use after free in Mojo in Google Chrome prior to 148.0.7778.168 allowed a r... 在 148.0.7778.168 之前的 Google Chrome 中的 Mojo 中使用... | 2026-05-14 |
| CVE-2026-8579 | 低 | 3.1 | Chrome | Insufficient validation of untrusted input in Skia in Google Chrome prior t... 148.0.7778.168 之前的 Google Chrome 中 Skia 中的不可信... | 2026-05-14 |
| CVE-2026-8578 | 低 | 3.1 | Linux OS Chrome | Out of bounds read in GPU in Google Chrome on Linux prior to 148.0.7778.168... 148.0.7778.168 之前的 Linux 上的 Google Chrome 中的 GPU... | 2026-05-14 |
| CVE-2026-8577 | 高 | 8.8 | Chrome | Integer overflow in Fonts in Google Chrome prior to 148.0.7778.168 allowed... 148.0.7778.168 之前的 Google Chrome 字體中的整數溢位允... | 2026-05-14 |
| CVE-2026-8576 | 中 | 4.3 | Linux OS Chrome | Inappropriate implementation in CORS in Google Chrome on Linux and ChromeOS... 148.0.7778.168 之前的 Linux 和 ChromeOS 上的 Google Chr... | 2026-05-14 |
| CVE-2026-8575 | 高 | 8.3 | Chrome | Use after free in UI in Google Chrome prior to 148.0.7778.168 allowed a rem... 148.0.7778.168 之前的 Google Chrome 中的 UI 中的「釋放... | 2026-05-14 |
| CVE-2026-8574 | 高 | 8.3 | Chrome | Use after free in Core in Google Chrome on Windows prior to 148.0.7778.168... 在 148.0.7778.168 之前的 Windows 上,在 Google Chrome... | 2026-05-14 |
| CVE-2026-8573 | 高 | 8.3 | Chrome | Integer overflow in Codecs in Google Chrome on Windows prior to 148.0.7778.... 148.0.7778.168 之前的 Windows 上 Google Chrome 的編解碼... | 2026-05-14 |
| CVE-2026-8572 | 低 | 3.1 | Chrome | Insufficient policy enforcement in Network in Google Chrome on Android prio... 148.0.7778.168 之前的 Android 版 Google Chrome 中的網路... | 2026-05-14 |
| CVE-2026-8571 | 高 | 8.3 | Chrome | Insufficient policy enforcement in GPU in Google Chrome on Android prior to... 148.0.7778.168 之前的 Android 版 Google Chrome 中 GPU... | 2026-05-14 |
| CVE-2026-8570 | 中 | 6.5 | Chrome | Type Confusion in V8 in Google Chrome prior to 148.0.7778.168 allowed a rem... 148.0.7778.168 之前的 Google Chrome V8 中的類型混淆允許... | 2026-05-14 |
| CVE-2026-8569 | 高 | 8.3 | Chrome | Out of bounds write in Codecs in Google Chrome on Mac prior to 148.0.7778.1... 148.0.7778.168 之前的 Mac 上的 Google Chrome 中的編解碼... | 2026-05-14 |
| CVE-2026-8568 | 低 | 3.1 | Chrome | Insufficient policy enforcement in AI in Google Chrome prior to 148.0.7778.... 148.0.7778.168 之前的 Google Chrome 中的 AI 策略執行不... | 2026-05-14 |
| CVE-2026-8567 | 中 | 4.3 | Chrome | Integer overflow in ANGLE in Google Chrome on Windows prior to 148.0.7778.1... 148.0.7778.168 之前的 Windows 上的 Google Chrome 中的 A... | 2026-05-14 |
| CVE-2026-8566 | 中 | 4.3 | Chrome | Insufficient policy enforcement in Payments in Google Chrome on Android pri... 148.0.7778.168 之前的 Android 版 Google Chrome 中的支付... | 2026-05-14 |
| CVE-2026-8565 | 中 | 4.7 | Chrome | Inappropriate implementation in Downloads in Google Chrome on Mac prior to... 148.0.7778.168 之前的 Mac 版 Google Chrome 中的“下載”實... | 2026-05-14 |
| CVE-2026-8564 | 中 | 4.2 | Chrome | Incorrect security UI in Downloads in Google Chrome on Android and Mac prio... 148.0.7778.168 之前的 Android 和 Mac 版 Google Chrome... | 2026-05-14 |
| CVE-2026-8563 | 中 | 4.3 | Chrome | Insufficient policy enforcement in IFrame Sandbox in Google Chrome on Windo... 148.0.7778.168 之前的 Windows 上的 Google Chrome 中的 I... | 2026-05-14 |
| CVE-2026-8562 | 中 | 4.3 | Chrome | Side-channel information leakage in Navigation in Google Chrome prior to 14... 148.0.7778.168 之前的 Google Chrome 導覽中的側通道資訊... | 2026-05-14 |
| CVE-2026-8561 | 中 | 5.4 | Chrome | Incorrect security UI in Fullscreen in Google Chrome prior to 148.0.7778.16... 148.0.7778.168 之前的 Google Chrome 中的全螢幕安全 UI... | 2026-05-14 |
| CVE-2026-8560 | 中 | 4.3 | Chrome | Heap buffer overflow in SwiftShader in Google Chrome on Mac and iOS prior t... Mac 和 iOS 148.0.7778.168 先前版本的 Google Chrome 中的... | 2026-05-14 |
| CVE-2026-8559 | 中 | 4.3 | Chrome | Integer overflow in Internationalization in Google Chrome on Windows prior... 148.0.7778.168 之前的 Windows 上的 Google Chrome 國際化... | 2026-05-14 |
| CVE-2026-8558 | 高 | 8.8 | Chrome | Out of bounds write in Fonts in Google Chrome prior to 148.0.7778.168 allow... 148.0.7778.168 之前的 Google Chrome 中的字體越界寫入允... | 2026-05-14 |
| CVE-2026-8557 | 高 | 7.5 | Chrome | Use after free in Accessibility in Google Chrome prior to 148.0.7778.168 al... 148.0.7778.168 之前的 Google Chrome 中的輔助功能中的釋... | 2026-05-14 |
| CVE-2026-8556 | 低 | 3.1 | Chrome | Inappropriate implementation in ANGLE in Google Chrome on Windows prior to... 148.0.7778.168 之前的 Windows 上的 Google Chrome 中的 A... | 2026-05-14 |
| CVE-2026-8555 | 高 | 8.8 | Chrome | Use after free in GTK in Google Chrome on Windows prior to 148.0.7778.168 a... 在 148.0.7778.168 之前的 Windows 上,在 Google Chrome... | 2026-05-14 |
| CVE-2026-8554 | 低 | 3.1 | Chrome | Type Confusion in ANGLE in Google Chrome on Windows prior to 148.0.7778.168... 148.0.7778.168 之前的 Windows 上的 Google Chrome 中的 A... | 2026-05-14 |
| CVE-2026-8553 | 低 | 3.1 | Chrome | Use after free in GPU in Google Chrome prior to 148.0.7778.168 allowed a re... 148.0.7778.168 之前的 Google Chrome 中的 GPU 中的釋放後... | 2026-05-14 |
| CVE-2026-8552 | 中 | 4.3 | Chrome | Heap buffer overflow in GPU in Google Chrome on Android prior to 148.0.7778... 148.0.7778.168 之前的 Android 版 Google Chrome 中的 GPU... | 2026-05-14 |
| CVE-2026-8551 | 高 | 8.8 | Chrome | Use after free in Downloads in Google Chrome prior to 148.0.7778.168 allowe... 148.0.7778.168 之前的 Google Chrome 中的「下載」中的「... | 2026-05-14 |
| CVE-2026-8550 | 中 | 6.5 | Chrome | Use after free in Google Lens in Google Chrome prior to 148.0.7778.168 allo... 148.0.7778.168 之前的 Google Chrome 中的 Google Lens 中... | 2026-05-14 |
| CVE-2026-8549 | 高 | 8.8 | Chrome | Use after free in Media in Google Chrome prior to 148.0.7778.168 allowed a... 在 148.0.7778.168 之前的 Google Chrome Media 中使用 aft... | 2026-05-14 |
| CVE-2026-8548 | 高 | 8.3 | Chrome | Out of bounds write in Media in Google Chrome prior to 148.0.7778.168 allow... 148.0.7778.168 之前的 Google Chrome 中的媒體越界寫入允... | 2026-05-14 |
| CVE-2026-8547 | 高 | 7.5 | Chrome | Insufficient policy enforcement in Passwords in Google Chrome on Windows pr... 148.0.7778.168 之前的 Windows 上 Google Chrome 中的密碼... | 2026-05-14 |
| CVE-2026-8546 | 中 | 5.3 | Chrome | Out of bounds read in GPU in Google Chrome on Mac and Windows prior to 148.... 148.0.7778.168 之前的 Mac 和 Windows 上的 Google Chrome... | 2026-05-14 |
| CVE-2026-8545 | 低 | 3.1 | Chrome | Object corruption in Compositing in Google Chrome prior to 148.0.7778.168 a... 148.0.7778.168 之前的 Google Chrome 中的合成中的物件損... | 2026-05-14 |
| CVE-2026-8544 | 高 | 8.8 | Chrome | Use after free in Media in Google Chrome prior to 148.0.7778.168 allowed a... 在 148.0.7778.168 之前的 Google Chrome Media 中使用 aft... | 2026-05-14 |
| CVE-2026-8543 | 中 | 5.3 | Chrome | Out of bounds read in FileSystem in Google Chrome on Mac prior to 148.0.777... 148.0.7778.168 之前的 Mac 上的 Google Chrome 中的檔案系... | 2026-05-14 |
| CVE-2026-8542 | 高 | 8.3 | Chrome | Use after free in Core in Google Chrome on Windows prior to 148.0.7778.168... 在 148.0.7778.168 之前的 Windows 上,在 Google Chrome... | 2026-05-14 |
| CVE-2026-8541 | 中 | 5.3 | Chrome | Out of bounds read in UI in Google Chrome prior to 148.0.7778.168 allowed a... 148.0.7778.168 之前的 Google Chrome 中的 UI 越界讀取允... | 2026-05-14 |
| CVE-2026-8540 | 高 | 8.8 | Chrome | Type Confusion in V8 in Google Chrome prior to 148.0.7778.168 allowed a rem... 148.0.7778.168 之前的 Google Chrome V8 中的類型混淆允許... | 2026-05-14 |
| CVE-2026-8539 | 中 | 5.4 | Chrome | Script injection in SanitizerAPI in Google Chrome on Android prior to 148.0... 148.0.7778.168 之前的 Android 版 Google Chrome 中的 San... | 2026-05-14 |
| CVE-2026-8538 | 中 | 5.3 | Chrome | Insufficient validation of untrusted input in GPU in Google Chrome prior to... 在 148.0.7778.168 之前的 Google Chrome 中,對 GPU 中不... | 2026-05-14 |
| CVE-2026-8537 | 中 | 4.3 | Chrome | Insufficient policy enforcement in ViewTransitions in Google Chrome prior t... 148.0.7778.168 之前的 Google Chrome 中 ViewTransitions... | 2026-05-14 |
| CVE-2026-8536 | 低 | 3.1 | Chrome | Insufficient validation of untrusted input in ReadingMode in Google Chrome... 148.0.7778.168 之前的 Mac 版 Google Chrome 中的 Reading... | 2026-05-14 |
| CVE-2026-8535 | 中 | 5.3 | Linux OS Chrome | Out of bounds read in Media in Google Chrome on Linux and ChromeOS prior to... Linux 和 148.0.7778.168 之前的 ChromeOS 上的 Google Chr... | 2026-05-14 |
| CVE-2026-8534 | 高 | 8.3 | Linux OS Chrome | Integer overflow in GPU in Google Chrome on Linux and ChromeOS prior to 148... Linux 和 148.0.7778.168 之前的 ChromeOS 上的 Google Chr... | 2026-05-14 |
| CVE-2026-8533 | 高 | 8.3 | Chrome | Use after free in Accessibility in Google Chrome prior to 148.0.7778.168 al... 148.0.7778.168 先前版本的 Google Chrome 的輔助功能中的... | 2026-05-14 |
| CVE-2026-8532 | 高 | 8.8 | Chrome | Integer overflow in XML in Google Chrome prior to 148.0.7778.168 allowed a... 148.0.7778.168 之前的 Google Chrome 中 XML 中的整數溢位... | 2026-05-14 |
| CVE-2026-8531 | 高 | 8.8 | Chrome | Heap buffer overflow in WebML in Google Chrome on Windows prior to 148.0.77... 148.0.7778.168 之前的 Windows 上的 Google Chrome 中的 W... | 2026-05-14 |
| CVE-2026-8530 | 高 | 8.3 | Chrome | Use after free in Network in Google Chrome on Windows prior to 148.0.7778.1... 148.0.7778.168 之前的 Windows 上的 Google Chrome 網路中... | 2026-05-14 |
| CVE-2026-8529 | 高 | 8.8 | Chrome | Heap buffer overflow in Codecs in Google Chrome prior to 148.0.7778.168 all... 148.0.7778.168 之前的 Google Chrome 編解碼器中的堆緩衝... | 2026-05-14 |
| CVE-2026-8528 | 中 | 4.3 | Chrome | Insufficient validation of untrusted input in SiteIsolation in Google Chrom... 148.0.7778.168 之前的 Google Chrome 中的 SiteIsolation... | 2026-05-14 |
| CVE-2026-8527 | 高 | 8.8 | Chrome | Insufficient validation of untrusted input in Downloads in Google Chrome pr... 148.0.7778.168 之前的 Google Chrome 中的下載中不受信任... | 2026-05-14 |
| CVE-2026-8526 | 高 | 8.8 | Chrome | Out of bounds write in WebRTC in Google Chrome prior to 148.0.7778.168 allo... 148.0.7778.168 之前的 Google Chrome 中的 WebRTC 越界寫... | 2026-05-14 |
| CVE-2026-8525 | 高 | 8.3 | Chrome | Heap buffer overflow in ANGLE in Google Chrome on Mac prior to 148.0.7778.1... 148.0.7778.168 之前的 Mac 版 Google Chrome 中的 ANGLE... | 2026-05-14 |
| CVE-2026-8524 | 高 | 8.8 | Chrome | Out of bounds write in WebAudio in Google Chrome prior to 148.0.7778.168 al... 148.0.7778.168 之前的 Google Chrome 中的 WebAudio 越界... | 2026-05-14 |
| CVE-2026-8523 | 高 | 8.3 | Chrome | Use after free in Mojo in Google Chrome prior to 148.0.7778.168 allowed a r... 148.0.7778.168 之前的 Google Chrome 中的 Mojo 中的「釋... | 2026-05-14 |
| CVE-2026-8522 | 高 | 8.8 | Chrome | Use after free in Downloads in Google Chrome on Mac prior to 148.0.7778.168... 在 148.0.7778.168 之前的 Mac 版 Google Chrome 中使用「... | 2026-05-14 |
| CVE-2026-8521 | 高 | 7.5 | Chrome | Use after free in Tab Groups in Google Chrome prior to 148.0.7778.168 allow... 在 148.0.7778.168 之前的 Google Chrome 標籤組中使用 aft... | 2026-05-14 |
| CVE-2026-8520 | 高 | 8.3 | Chrome | Race in Payments in Google Chrome prior to 148.0.7778.168 allowed a remote... 148.0.7778.168 之前的 Google Chrome 中的付款競態允許遠... | 2026-05-14 |
| CVE-2026-8519 | 高 | 8.8 | Chrome | Integer overflow in ANGLE in Google Chrome on Windows prior to 148.0.7778.1... 148.0.7778.168 之前的 Windows 上的 Google Chrome 中的 A... | 2026-05-14 |
| CVE-2026-8518 | 高 | 8.8 | Chrome | Use after free in Blink in Google Chrome prior to 148.0.7778.168 allowed a... 在 148.0.7778.168 之前的 Google Chrome 中使用 after fre... | 2026-05-14 |
| CVE-2026-8517 | 高 | 8.8 | Chrome | Object lifecycle issue in WebShare in Google Chrome on Mac prior to 148.0.7... 148.0.7778.168 之前的 Mac 版 Google Chrome 中的 WebShar... | 2026-05-14 |
| CVE-2026-8516 | 中 | 5.3 | Chrome | Insufficient validation of untrusted input in DataTransfer in Google Chrome... 148.0.7778.168 之前的 Google Chrome 中的 DataTransfer... | 2026-05-14 |
| CVE-2026-8515 | 高 | 8.3 | Chrome | Use after free in HID in Google Chrome prior to 148.0.7778.168 allowed a re... 148.0.7778.168 之前的 Google Chrome 中的 HID 中的「釋放... | 2026-05-14 |
| CVE-2026-8514 | 高 | 8.3 | Chrome | Use after free in Aura in Google Chrome prior to 148.0.7778.168 allowed a r... 148.0.7778.168 之前的 Google Chrome 中的 Aura 中的釋放... | 2026-05-14 |
| CVE-2026-8513 | 高 | 8.3 | Chrome | Use after free in Input in Google Chrome on Android prior to 148.0.7778.168... 在 148.0.7778.168 之前的 Android 上,Google Chrome 中的... | 2026-05-14 |
| CVE-2026-8512 | 高 | 8.3 | Chrome | Use after free in FileSystem in Google Chrome prior to 148.0.7778.168 allow... 148.0.7778.168 之前的 Google Chrome 中的檔案系統中的釋... | 2026-05-14 |
| CVE-2026-8511 | 嚴重 | 9.6 | Chrome | Use after free in UI in Google Chrome prior to 148.0.7778.168 allowed a rem... 在 148.0.7778.168 之前的 Google Chrome UI 中使用 after... | 2026-05-14 |
| CVE-2026-8510 | 高 | 7.5 | Chrome | Integer overflow in Skia in Google Chrome on Windows prior to 148.0.7778.16... 148.0.7778.168 之前的 Windows 上 Google Chrome 中的 Ski... | 2026-05-14 |
| CVE-2026-8509 | 高 | 8.8 | Chrome | Heap buffer overflow in WebML in Google Chrome prior to 148.0.7778.168 allo... 148.0.7778.168 之前的 Google Chrome 中的 WebML 中的堆緩... | 2026-05-14 |
| CVE-2026-42597 | 中 | 5.9 | Chrome | Gotenberg is a Docker-powered stateless API for PDF files. Prior to 8.32.0,... Gotenberg 是一個由 Docker 支援的 PDF 檔案無狀態 API。在... | 2026-05-14 |
| CVE-2026-42595 | 高 | 8.6 | Chrome | Gotenberg is a Docker-powered stateless API for PDF files. Prior to 8.32.0,... Gotenberg 是一個由 Docker 支援的 PDF 檔案無狀態 API。在... | 2026-05-14 |
| CVE-2026-42593 | 中 | 5.3 | Chrome | Gotenberg is a Docker-powered stateless API for PDF files. Prior to 8.32.0,... Gotenberg 是一個由 Docker 支援的 PDF 檔案無狀態 API。在... | 2026-05-14 |
| CVE-2026-42592 | 中 | 5.3 | Chrome | Gotenberg is a Docker-powered stateless API for PDF files. Prior to 8.32.0,... Gotenberg 是一個由 Docker 支援的 PDF 檔案無狀態 API。在... | 2026-05-14 |
| CVE-2026-6402 | 中 | 5.3 | Chrome | webpack-dev-server versions up to and including 5.2.3 are vulnerable to cro... 當透過非潛在可信任來源(例如純 HTTP)提供服務時,5.2.3... | 2026-05-12 |
| CVE-2026-8022 | 低 | 3.1 | Chrome | Inappropriate implementation in MHTML in Google Chrome prior to 148.0.7778.... 148.0.7778.96 之前的 Google Chrome 中的 MHTML 實作不當... | 2026-05-06 |
| CVE-2026-8021 | 中 | 4.2 | Chrome | Script injection in UI in Google Chrome prior to 148.0.7778.96 allowed a re... 148.0.7778.96 之前的 Google Chrome 中的 UI 中的腳本注入... | 2026-05-06 |
| CVE-2026-8020 | 中 | 5.3 | Chrome | Uninitialized Use in GPU in Google Chrome on Android prior to 148.0.7778.96... 148.0.7778.96 之前的 Android 版 Google Chrome 中的 GPU... | 2026-05-06 |
| CVE-2026-8019 | 中 | 5.4 | Chrome | Insufficient policy enforcement in WebApp in Google Chrome prior to 148.0.7... 148.0.7778.96 之前的 Google Chrome 中 WebApp 中的策略執... | 2026-05-06 |
| CVE-2026-8018 | 高 | 8.1 | Chrome | Insufficient policy enforcement in DevTools in Google Chrome prior to 148.0... 148.0.7778.96 之前的 Google Chrome 中的 DevTools 中的策... | 2026-05-06 |
| CVE-2026-8017 | 低 | 3.1 | Chrome | Side-channel information leakage in Media in Google Chrome prior to 148.0.7... 148.0.7778.96 之前的 Google Chrome 媒體中的側通道資訊洩... | 2026-05-06 |
| CVE-2026-8016 | 高 | 8.8 | Chrome | Use after free in WebRTC in Google Chrome prior to 148.0.7778.96 allowed a... 在 148.0.7778.96 之前的 Google Chrome 中的 WebRTC 中使... | 2026-05-06 |
| CVE-2026-8015 | 中 | 5.4 | Chrome | Inappropriate implementation in Media in Google Chrome prior to 148.0.7778.... 148.0.7778.96 之前的 Google Chrome 媒體中的不當實作允許... | 2026-05-06 |
| CVE-2026-8014 | 中 | 4.3 | Chrome | Inappropriate implementation in Preload in Google Chrome prior to 148.0.777... 148.0.7778.96 之前的 Google Chrome 中的 Preload 實施不... | 2026-05-06 |
| CVE-2026-8013 | 中 | 4.3 | Chrome | Insufficient validation of untrusted input in FedCM in Google Chrome prior... 148.0.7778.96 之前的 Google Chrome 中 FedCM 中的不受信... | 2026-05-06 |
| CVE-2026-8012 | 中 | 5.4 | Chrome | Inappropriate implementation in MHTML in Google Chrome prior to 148.0.7778.... 148.0.7778.96 之前的 Google Chrome 中的 MHTML 中的不當... | 2026-05-06 |
| CVE-2026-8011 | 中 | 4.3 | Chrome | Insufficient policy enforcement in Search in Google Chrome prior to 148.0.7... 148.0.7778.96 之前的 Google Chrome 搜尋中的策略執行不充... | 2026-05-06 |
| CVE-2026-8010 | 中 | 6.3 | Chrome | Insufficient validation of untrusted input in SiteIsolation in Google Chrom... 148.0.7778.96 之前的 Google Chrome 中的 SiteIsolation... | 2026-05-06 |
| CVE-2026-8009 | 中 | 5 | Chrome | Inappropriate implementation in Cast in Google Chrome prior to 148.0.7778.9... 148.0.7778.96 之前的 Google Chrome 中的 Cast 中的不當實... | 2026-05-06 |
| CVE-2026-8008 | 中 | 5.4 | Chrome | Inappropriate implementation in DevTools in Google Chrome prior to 148.0.77... 148.0.7778.96 之前的 Google Chrome 中的 DevTools 中的不... | 2026-05-06 |
| CVE-2026-8007 | 高 | 7.5 | Chrome | Insufficient validation of untrusted input in Cast in Google Chrome prior t... 在 148.0.7778.96 之前的版本中,Google Chrome 中的 Cast... | 2026-05-06 |
| CVE-2026-8006 | 中 | 5.4 | Chrome | Insufficient policy enforcement in DevTools in Google Chrome prior to 148.0... 148.0.7778.96 之前的 Google Chrome 中的 DevTools 中的策... | 2026-05-06 |
| CVE-2026-8005 | 中 | 4.3 | Chrome | Insufficient validation of untrusted input in Cast in Google Chrome prior t... 148.0.7778.96 之前的 Google Chrome 中的 Cast 中的不受信... | 2026-05-06 |
| CVE-2026-8004 | 中 | 4.3 | Chrome | Insufficient policy enforcement in DevTools in Google Chrome prior to 148.0... 148.0.7778.96 之前的 Google Chrome 中的 DevTools 中的策... | 2026-05-06 |
| CVE-2026-8003 | 中 | 5.4 | Chrome | Insufficient validation of untrusted input in TabGroups in Google Chrome pr... 148.0.7778.96 之前的 Google Chrome 中 TabGroup 中的不受... | 2026-05-06 |
| CVE-2026-8002 | 高 | 8.8 | Chrome | Use after free in Audio in Google Chrome on Mac prior to 148.0.7778.96 allo... 在 148.0.7778.96 之前的 Mac 上的 Google Chrome 音訊中使... | 2026-05-06 |
| CVE-2026-8001 | 高 | 8.3 | Linux OS Chrome | Use After Free in Printing in Google Chrome on Linux, Mac, ChromeOS prior t... 在 Linux、Mac 上的 Google Chrome 中使用 After Free 進行... | 2026-05-06 |
| CVE-2026-8000 | 高 | 8.8 | Chrome | Insufficient validation of untrusted input in ChromeDriver in Google Chrome... 148.0.7778.96 之前的 Windows 上的 Google Chrome 中的 Ch... | 2026-05-06 |
| CVE-2026-7999 | 中 | 4.3 | Chrome | Inappropriate implementation in V8 in Google Chrome prior to 148.0.7778.96... 148.0.7778.96 之前的 Google Chrome V8 中的不當實作允許... | 2026-05-06 |
| CVE-2026-7998 | 中 | 5.4 | Chrome | Insufficient validation of untrusted input in Dialog in Google Chrome prior... 148.0.7778.96 之前的版本中,Google Chrome 中的對話方塊... | 2026-05-06 |
| CVE-2026-7997 | 高 | 7.8 | Chrome | Insufficient validation of untrusted input in Updater in Google Chrome on M... 148.0.7778.96 之前的 Mac 上 Google Chrome 的更新程式中... | 2026-05-06 |
| CVE-2026-7996 | 中 | 4.2 | Chrome | Insufficient validation of untrusted input in SSL in Google Chrome prior to... 在 148.0.7778.96 之前的 Google Chrome 中,對 SSL 中不可... | 2026-05-06 |
| CVE-2026-7995 | 高 | 8.8 | Chrome | Out of bounds read in AdFilter in Google Chrome prior to 148.0.7778.96 allo... 148.0.7778.96 之前的 Google Chrome 中的 AdFilter 中的越... | 2026-05-06 |
| CVE-2026-7994 | 高 | 7.8 | Chrome | Inappropriate implementation in Chromoting in Google Chrome on Windows prio... 148.0.7778.96 之前的 Windows 上的 Google Chrome 中的 Ch... | 2026-05-06 |
| CVE-2026-7993 | 中 | 4.2 | Chrome | Insufficient validation of untrusted input in Payments in Google Chrome on... 148.0.7778.96 之前的 Android 版 Google Chrome 中的付款... | 2026-05-06 |
| CVE-2026-7992 | 高 | 8.8 | Linux OS Chrome | Insufficient validation of untrusted input in UI in Google Chrome on Linux,... Linux 上的 Google Chrome、148.0.7778.96 之前的 ChromeOS... | 2026-05-06 |
| CVE-2026-7991 | 高 | 8.8 | Chrome | Use after free in UI in Google Chrome prior to 148.0.7778.96 allowed a remo... 148.0.7778.96 之前的 Google Chrome 中的 UI 中的「釋放後... | 2026-05-06 |
| CVE-2026-7990 | 高 | 7.8 | Chrome | Insufficient validation of untrusted input in Updater in Google Chrome on W... 148.0.7778.96 之前的 Windows 上的 Google Chrome 更新程... | 2026-05-06 |
| CVE-2026-7989 | 中 | 4.2 | Chrome | Insufficient data validation in DataTransfer in Google Chrome prior to 148.... 148.0.7778.96 之前的 Google Chrome 中的 DataTransfer 中... | 2026-05-06 |
| CVE-2026-7988 | 高 | 8.8 | Chrome | Type Confusion in WebRTC in Google Chrome prior to 148.0.7778.96 allowed a... 148.0.7778.96 之前的 Google Chrome 中的 WebRTC 中的類型... | 2026-05-06 |
| CVE-2026-7987 | 高 | 8.8 | Chrome | Use after free in WebRTC in Google Chrome prior to 148.0.7778.96 allowed a... 在 148.0.7778.96 之前的 Google Chrome 中的 WebRTC 中使... | 2026-05-06 |
| CVE-2026-7986 | 中 | 4.3 | Chrome | Insufficient policy enforcement in Autofill in Google Chrome prior to 148.0... 148.0.7778.96 之前的 Google Chrome 中的自動填入策略執行... | 2026-05-06 |
| CVE-2026-7985 | 高 | 8.3 | Chrome | Use after free in GPU in Google Chrome prior to 148.0.7778.96 allowed a rem... 148.0.7778.96 之前的 Google Chrome 中的 GPU 中的釋放後... | 2026-05-06 |
| CVE-2026-7984 | 高 | 8.8 | Chrome | Use after free in ReadingMode in Google Chrome prior to 148.0.7778.96 allow... 在 148.0.7778.96 之前的 Google Chrome 中,在 ReadingMod... | 2026-05-06 |
| CVE-2026-7983 | 中 | 4.3 | Chrome | Out of bounds read in Dawn in Google Chrome prior to 148.0.7778.96 allowed... 148.0.7778.96 之前的 Google Chrome 中的 Dawn 中的越界讀... | 2026-05-06 |
| CVE-2026-7982 | 中 | 6.5 | Chrome | Uninitialized Use in WebCodecs in Google Chrome prior to 148.0.7778.96 allo... 148.0.7778.96 之前的 Google Chrome 中的 WebCodecs 中的... | 2026-05-06 |
| CVE-2026-7981 | 高 | 8.1 | Chrome | Out of bounds read in Codecs in Google Chrome prior to 148.0.7778.96 allowe... 148.0.7778.96 之前的 Google Chrome 中的編解碼器越界讀取... | 2026-05-06 |
| CVE-2026-7980 | 高 | 8.8 | Chrome | Use after free in WebAudio in Google Chrome prior to 148.0.7778.96 allowed... 在 148.0.7778.96 之前的 Google Chrome 中的 WebAudio 中... | 2026-05-06 |
| CVE-2026-7979 | 中 | 4.3 | Chrome | Inappropriate implementation in Media in Google Chrome prior to 148.0.7778.... 148.0.7778.96 之前的 Google Chrome 媒體中的不當實作允許... | 2026-05-06 |
| CVE-2026-7978 | 高 | 8.1 | Chrome | Inappropriate implementation in Companion in Google Chrome on Mac prior to... 148.0.7778.96 之前的 Mac 版 Google Chrome 中的 Companio... | 2026-05-06 |
| CVE-2026-7977 | 中 | 6.3 | Chrome | Inappropriate implementation in Canvas in Google Chrome prior to 148.0.7778... 148.0.7778.96 之前的 Google Chrome 中的 Canvas 實施不當... | 2026-05-06 |
| CVE-2026-7976 | 高 | 7.5 | Chrome | Use after free in Views in Google Chrome prior to 148.0.7778.96 allowed an... 148.0.7778.96 之前的 Google Chrome 視圖中的「釋放後使用... | 2026-05-06 |
| CVE-2026-7975 | 高 | 8.3 | Chrome | Use after free in DevTools in Google Chrome prior to 148.0.7778.96 allowed... 148.0.7778.96 之前的 Google Chrome 中的 DevTools 中的釋... | 2026-05-06 |
| CVE-2026-7974 | 高 | 8.8 | Chrome | Use after free in Blink in Google Chrome prior to 148.0.7778.96 allowed a r... 在 148.0.7778.96 之前的 Google Chrome 中使用 after free... | 2026-05-06 |
| CVE-2026-7973 | 高 | 8.8 | Chrome | Integer overflow in Dawn in Google Chrome on Windows prior to 148.0.7778.96... 148.0.7778.96 之前的 Windows 上的 Google Chrome 中的 Da... | 2026-05-06 |
| CVE-2026-7972 | 中 | 4.3 | Chrome | Uninitialized Use in GPU in Google Chrome prior to 148.0.7778.96 allowed a... 148.0.7778.96 之前的 Google Chrome 中 GPU 中的未初始化... | 2026-05-06 |
| CVE-2026-7971 | 中 | 6.3 | Chrome | Inappropriate implementation in ORB in Google Chrome prior to 148.0.7778.96... 148.0.7778.96 之前的 Google Chrome 中 ORB 中的不當實作... | 2026-05-06 |
| CVE-2026-7970 | 高 | 8.3 | Chrome | Use after free in TopChrome in Google Chrome prior to 148.0.7778.96 allowed... 148.0.7778.96 之前的 Google Chrome 中的 TopChrome 中的... | 2026-05-06 |
| CVE-2026-7969 | 中 | 4.3 | Chrome | Integer overflow in Network in Google Chrome prior to 148.0.7778.96 allowed... 148.0.7778.96 之前的 Google Chrome 網路中的整數溢位允許... | 2026-05-06 |
| CVE-2026-7968 | 低 | 3.1 | Chrome | Insufficient validation of untrusted input in CORS in Google Chrome prior t... 148.0.7778.96 之前的 Google Chrome 中對 CORS 中不受信任... | 2026-05-06 |
| CVE-2026-7967 | 高 | 8.3 | Chrome | Insufficient validation of untrusted input in Navigation in Google Chrome p... 在 148.0.7778.96 之前的版本中,Google Chrome 導覽中的不... | 2026-05-06 |
| CVE-2026-7966 | 低 | 3.1 | Chrome | Insufficient validation of untrusted input in SiteIsolation in Google Chrom... 148.0.7778.96 之前的 Google Chrome 中的 SiteIsolation... | 2026-05-06 |
| CVE-2026-7965 | 低 | 3.1 | Chrome | Insufficient validation of untrusted input in DevTools in Google Chrome pri... 148.0.7778.96 之前的 Google Chrome 中的 DevTools 中對不... | 2026-05-06 |
| CVE-2026-7964 | 中 | 4.2 | Chrome | Insufficient validation of untrusted input in FileSystem in Google Chrome p... 148.0.7778.96 之前的 Google Chrome 中,對檔案系統中不受... | 2026-05-06 |
| CVE-2026-7963 | 高 | 8.3 | Chrome | Inappropriate implementation in ServiceWorker in Google Chrome prior to 148... 148.0.7778.96 之前的 Google Chrome 中的 ServiceWorker... | 2026-05-06 |
| CVE-2026-7962 | 中 | 5.4 | Chrome | Insufficient policy enforcement in DirectSockets in Google Chrome prior to... 148.0.7778.96 之前的 Google Chrome 中的 DirectSockets... | 2026-05-06 |
| CVE-2026-7961 | 中 | 4.3 | Chrome | Insufficient validation of untrusted input in Permissions in Google Chrome... 148.0.7778.96 之前的 Google Chrome 中的權限中不受信任的... | 2026-05-06 |
| CVE-2026-7960 | 中 | 5.3 | Chrome | Race in Speech in Google Chrome prior to 148.0.7778.96 allowed a remote att... 148.0.7778.96 之前的 Google Chrome 中的語音競爭允許破壞... | 2026-05-06 |
| CVE-2026-7959 | 低 | 3.1 | Chrome | Inappropriate implementation in Navigation in Google Chrome prior to 148.0.... 148.0.7778.96 先前版本的 Google Chrome 導覽中的不當實作... | 2026-05-06 |
| CVE-2026-7958 | 中 | 5.4 | Chrome | Inappropriate implementation in ServiceWorker in Google Chrome prior to 148... 148.0.7778.96 之前的 Google Chrome 中的 ServiceWorker... | 2026-05-06 |
| CVE-2026-7957 | 高 | 8.8 | Chrome | Out of bounds write in Media in Google Chrome on Mac, iOS prior to 148.0.77... Mac 上的 Google Chrome 中的媒體越界寫入,iOS 148.0.7778... | 2026-05-06 |
| CVE-2026-7956 | 高 | 8.3 | Chrome | Use after free in Navigation in Google Chrome prior to 148.0.7778.96 allowe... 148.0.7778.96 先前版本的 Google Chrome 導覽中的釋放後使... | 2026-05-06 |
| CVE-2026-7955 | 中 | 5.3 | Chrome | Uninitialized Use in GPU in Google Chrome prior to 148.0.7778.96 allowed a... 148.0.7778.96 之前的 Google Chrome 中的 GPU 中的未初始... | 2026-05-06 |
| CVE-2026-7954 | 低 | 3.1 | Chrome | Race in Shared Storage in Google Chrome prior to 148.0.7778.96 allowed a re... 148.0.7778.96 之前的 Google Chrome 中的共享儲存競爭允許... | 2026-05-06 |
| CVE-2026-7953 | 中 | 6.1 | Chrome | Insufficient validation of untrusted input in Omnibox in Google Chrome prio... 148.0.7778.96 先前的版本中,Google Chrome 中的多功能方... | 2026-05-06 |
| CVE-2026-7952 | 中 | 4.2 | Chrome | Insufficient policy enforcement in Extensions in Google Chrome prior to 148... 148.0.7778.96 之前的 Google Chrome 擴充功能中的策略執行... | 2026-05-06 |
| CVE-2026-7951 | 高 | 8.8 | Chrome | Out of bounds write in WebRTC in Google Chrome prior to 148.0.7778.96 allow... 148.0.7778.96 之前的 Google Chrome 中的 WebRTC 越界寫入... | 2026-05-06 |
| CVE-2026-7950 | 中 | 5.4 | Chrome | Out of bounds read and write in GFX in Google Chrome prior to 148.0.7778.96... 148.0.7778.96 之前的 Google Chrome 中的 GFX 中的越界讀... | 2026-05-06 |
| CVE-2026-7949 | 低 | 3.1 | Chrome | Out of bounds read in Skia in Google Chrome prior to 148.0.7778.96 allowed... 148.0.7778.96 之前的 Google Chrome 中的 Skia 中的越界讀... | 2026-05-06 |
| CVE-2026-7948 | 高 | 7.5 | Chrome | Race in Chromoting in Google Chrome on Windows prior to 148.0.7778.96 allow... 148.0.7778.96 之前的 Windows 上的 Google Chrome 中的 Ch... | 2026-05-06 |
| CVE-2026-7947 | 中 | 4.2 | Chrome | Insufficient validation of untrusted input in Network in Google Chrome prio... 148.0.7778.96 之前的 Google Chrome 中網路中不受信任的輸... | 2026-05-06 |
| CVE-2026-7946 | 中 | 4.3 | Linux OS Chrome | Insufficient policy enforcement in WebUI in Google Chrome on Linux, Mac, Wi... 148.0.7778.96 之前的 Linux、Mac、Windows、ChromeOS 上的... | 2026-05-06 |
| CVE-2026-7945 | 低 | 3.1 | Chrome | Insufficient validation of untrusted input in COOP in Google Chrome prior t... 148.0.7778.96 之前的 Google Chrome 中,由於對 COOP 中不... | 2026-05-06 |
| CVE-2026-7944 | 低 | 3.1 | Chrome | Insufficient validation of untrusted input in Persistent Cache in Google Ch... 在 148.0.7778.96 之前的 Google Chrome 中,對持久緩存中... | 2026-05-06 |
| CVE-2026-7943 | 中 | 4.2 | Chrome | Insufficient validation of untrusted input in ANGLE in Google Chrome prior... 在 148.0.7778.96 之前的 Google Chrome 中,對 ANGLE 中不... | 2026-05-06 |
| CVE-2026-7942 | 中 | 4.3 | Chrome | Integer overflow in ANGLE in Google Chrome prior to 148.0.7778.96 allowed a... 148.0.7778.96 之前的 Google Chrome 中 ANGLE 中的整數溢... | 2026-05-06 |
| CVE-2026-7941 | 中 | 4.4 | Chrome | Insufficient validation of untrusted input in Mobile in Google Chrome on An... 148.0.7778.96 之前的 Android 版 Google Chrome 中的行動... | 2026-05-06 |
| CVE-2026-7940 | 高 | 8.8 | Chrome | Use after free in V8 in Google Chrome prior to 148.0.7778.96 allowed an att... 在 148.0.7778.96 之前的 Google Chrome V8 中使用 after f... | 2026-05-06 |
| CVE-2026-7939 | 中 | 5.4 | Chrome | Inappropriate implementation in SanitizerAPI in Google Chrome prior to 148.... 148.0.7778.96 之前的 Google Chrome 中的 SanitizerAPI 實... | 2026-05-06 |
| CVE-2026-7938 | 高 | 8.8 | Chrome | Use after free in CSS in Google Chrome prior to 148.0.7778.96 allowed a rem... 在 148.0.7778.96 之前的 Google Chrome 中使用 after free... | 2026-05-06 |
| CVE-2026-7937 | 低 | 3.1 | Chrome | Insufficient policy enforcement in DevTools in Google Chrome prior to 148.0... 148.0.7778.96 之前的 Google Chrome 中的 DevTools 中的策... | 2026-05-06 |
| CVE-2026-7936 | 中 | 4.3 | Chrome | Object lifecycle issue in V8 in Google Chrome prior to 148.0.7778.96 allowe... 148.0.7778.96 之前的 Google Chrome V8 中的物件生命週期... | 2026-05-06 |
| CVE-2026-7935 | 中 | 5.4 | Chrome | Inappropriate implementation in Speech in Google Chrome prior to 148.0.7778... 148.0.7778.96 之前的 Google Chrome 語音中的不當實現允許... | 2026-05-06 |
| CVE-2026-7934 | 中 | 4.2 | Chrome | Insufficient validation of untrusted input in Popup Blocker in Google Chrom... 148.0.7778.96 之前的 Google Chrome 中的彈出視窗阻止程式... | 2026-05-06 |
| CVE-2026-7933 | 中 | 4.3 | Chrome | Out of bounds read in WebCodecs in Google Chrome prior to 148.0.7778.96 all... 148.0.7778.96 之前的 Google Chrome 中的 WebCodecs 中的... | 2026-05-06 |
| CVE-2026-7932 | 中 | 4.4 | Chrome | Insufficient policy enforcement in Downloads in Google Chrome prior to 148.... 148.0.7778.96 之前的 Google Chrome 中的下載策略執行不充... | 2026-05-06 |
| CVE-2026-7931 | 中 | 5.4 | Chrome | Insufficient validation of untrusted input in iOS in Google Chrome on iOS p... 148.0.7778.96 之前的 iOS 版 Google Chrome 中對 iOS 中不... | 2026-05-06 |
| CVE-2026-7930 | 高 | 8.8 | Chrome | Insufficient validation of untrusted input in Cookies in Google Chrome prio... 148.0.7778.96 之前的 Google Chrome 中 Cookie 中的不受信... | 2026-05-06 |
| CVE-2026-7929 | 高 | 7.5 | Chrome | Use after free in MediaRecording in Google Chrome prior to 148.0.7778.96 al... 148.0.7778.96 之前的 Google Chrome 中的 MediaRecording... | 2026-05-06 |
| CVE-2026-7928 | 高 | 8.8 | Chrome | Use after free in WebRTC in Google Chrome on Windows prior to 148.0.7778.96... 在 148.0.7778.96 之前的 Windows 上,在 Google Chrome 中... | 2026-05-06 |
| CVE-2026-7927 | 高 | 8.8 | Chrome | Type Confusion in Runtime in Google Chrome prior to 148.0.7778.96 allowed a... 148.0.7778.96 之前的 Google Chrome 運行時中的類型混亂允... | 2026-05-06 |
| CVE-2026-7926 | 高 | 8.8 | Chrome | Use after free in PresentationAPI in Google Chrome prior to 148.0.7778.96 a... 148.0.7778.96 之前的 Google Chrome 中的PresentationAPI... | 2026-05-06 |
| CVE-2026-7925 | 高 | 7.8 | Chrome | Use after free in Chromoting in Google Chrome on Windows prior to 148.0.777... 148.0.7778.96 之前的 Windows 上的 Google Chrome 中的 Ch... | 2026-05-06 |
| CVE-2026-7924 | 中 | 6.5 | Chrome | Uninitialized Use in Dawn in Google Chrome prior to 148.0.7778.96 allowed a... 148.0.7778.96 之前的 Google Chrome 中的 Dawn 中的未初始... | 2026-05-06 |
| CVE-2026-7923 | 高 | 8.3 | Chrome | Out of bounds write in Skia in Google Chrome prior to 148.0.7778.96 allowed... 148.0.7778.96 之前的 Google Chrome 中的 Skia 中的越界寫... | 2026-05-06 |
| CVE-2026-7922 | 高 | 8.3 | Chrome | Use after free in ServiceWorker in Google Chrome prior to 148.0.7778.96 all... 在 148.0.7778.96 之前的 Google Chrome 中的 ServiceWorke... | 2026-05-06 |
| CVE-2026-7921 | 高 | 8.8 | Chrome | Use after free in Passwords in Google Chrome prior to 148.0.7778.96 allowed... 148.0.7778.96 先前版本的 Google Chrome 密碼中的「釋放後... | 2026-05-06 |
| CVE-2026-7920 | 高 | 8.3 | Chrome | Use after free in Skia in Google Chrome prior to 148.0.7778.96 allowed a re... 148.0.7778.96 之前的 Google Chrome 中的 Skia 中的「釋放... | 2026-05-06 |
| CVE-2026-7919 | 高 | 8.3 | Chrome | Use after free in Aura in Google Chrome prior to 148.0.7778.96 allowed a re... 148.0.7778.96 之前的 Google Chrome 中的 Aura 中的釋放後... | 2026-05-06 |
| CVE-2026-7918 | 高 | 8.3 | Chrome | Use after free in GPU in Google Chrome prior to 148.0.7778.96 allowed a rem... 148.0.7778.96 之前的 Google Chrome 中的 GPU 中的釋放後... | 2026-05-06 |
| CVE-2026-7917 | 高 | 8.3 | Chrome | Use after free in Fullscreen in Google Chrome on Windows prior to 148.0.777... 在 148.0.7778.96 之前的 Windows 上,在 Google Chrome 的... | 2026-05-06 |
| CVE-2026-7916 | 高 | 8.3 | Chrome | Insufficient data validation in InterestGroups in Google Chrome prior to 14... 148.0.7778.96 之前的 Google Chrome 中的 InterestGroups... | 2026-05-06 |
| CVE-2026-7915 | 中 | 4.3 | Chrome | Insufficient data validation in DevTools in Google Chrome on Android prior... 148.0.7778.96 之前的 Android 版 Google Chrome 中的 DevT... | 2026-05-06 |
| CVE-2026-7914 | 高 | 8.3 | Chrome | Type Confusion in Accessibility in Google Chrome on Windows prior to 148.0.... 148.0.7778.96 之前的 Windows 上的 Google Chrome 中的輔... | 2026-05-06 |
| CVE-2026-7913 | 高 | 7.8 | Chrome | Insufficient policy enforcement in DevTools in Google Chrome on Android pri... 148.0.7778.96 之前的 Android 版 Google Chrome 中的 DevT... | 2026-05-06 |
| CVE-2026-7912 | 中 | 4.2 | Chrome | Integer overflow in GPU in Google Chrome on Android prior to 148.0.7778.96... 148.0.7778.96 之前的 Android 版 Google Chrome 中的 GPU... | 2026-05-06 |
| CVE-2026-7911 | 高 | 8.3 | Chrome | Use after free in Aura in Google Chrome on Windows prior to 148.0.7778.96 a... 148.0.7778.96 之前的 Windows 上的 Google Chrome 中的 Au... | 2026-05-06 |
| CVE-2026-7910 | 嚴重 | 9.6 | Chrome | Use after free in Views in Google Chrome prior to 148.0.7778.96 allowed a r... 148.0.7778.96 之前的 Google Chrome 視圖中的釋放後使用允... | 2026-05-06 |
| CVE-2026-7909 | 低 | 3.1 | Chrome | Inappropriate implementation in ServiceWorker in Google Chrome prior to 148... 148.0.7778.96 之前的 Google Chrome 中的 ServiceWorker... | 2026-05-06 |
| CVE-2026-7908 | 嚴重 | 9.6 | Chrome | Use after free in Fullscreen in Google Chrome prior to 148.0.7778.96 allowe... 148.0.7778.96 先前版本的 Google Chrome 中的全螢幕釋放後... | 2026-05-06 |
| CVE-2026-7907 | 高 | 8.8 | Chrome | Use after free in DOM in Google Chrome prior to 148.0.7778.96 allowed a rem... 在 148.0.7778.96 之前的 Google Chrome 中,在 DOM 中使用... | 2026-05-06 |
| CVE-2026-7906 | 高 | 8.8 | Chrome | Use after free in SVG in Google Chrome prior to 148.0.7778.96 allowed a rem... 148.0.7778.96 先前版本的 Google Chrome 中的 SVG 使用 af... | 2026-05-06 |
| CVE-2026-7905 | 高 | 8.3 | Chrome | Insufficient validation of untrusted input in Media in Google Chrome on And... 148.0.7778.96 之前的 Android 版 Google Chrome 中的媒體... | 2026-05-06 |
| CVE-2026-7904 | 中 | 4.3 | Chrome | Out of bounds read in Fonts in Google Chrome prior to 148.0.7778.96 allowed... 148.0.7778.96 之前的 Google Chrome 字體中的越界讀取允許... | 2026-05-06 |
| CVE-2026-7903 | 高 | 8.8 | Chrome | Integer overflow in ANGLE in Google Chrome on Mac,Windows prior to 148.0.77... Mac 和 Windows 148.0.7778.96 先前版本的 Google Chrome... | 2026-05-06 |
| CVE-2026-7902 | 高 | 8.8 | Chrome | Out of bounds memory access in V8 in Google Chrome prior to 148.0.7778.96 a... 148.0.7778.96 之前的 Google Chrome V8 中的越界記憶體存... | 2026-05-06 |
| CVE-2026-7901 | 高 | 8.8 | Chrome | Use after free in ANGLE in Google Chrome on Mac prior to 148.0.7778.96 allo... 在 148.0.7778.96 之前的 Mac 版 Google Chrome 中使用 aft... | 2026-05-06 |
| CVE-2026-7900 | 高 | 8.3 | Chrome | Heap buffer overflow in ANGLE in Google Chrome prior to 148.0.7778.96 allow... 148.0.7778.96 之前的 Google Chrome ANGLE 中的堆緩衝區溢... | 2026-05-06 |
| CVE-2026-7899 | 高 | 8.8 | Chrome | Out of bounds read and write in V8 in Google Chrome prior to 148.0.7778.96... 148.0.7778.96 之前的 Google Chrome V8 中的越界讀寫允許... | 2026-05-06 |
| CVE-2026-7898 | 高 | 8.8 | Linux OS Chrome | Use after free in Chromoting in Google Chrome on Linux prior to 148.0.7778.... 148.0.7778.96 之前的 Linux 上的 Google Chrome 中的 Chro... | 2026-05-06 |
| CVE-2026-7897 | 高 | 7.5 | Chrome | Use after free in Mobile in Google Chrome on iOS prior to 148.0.7778.96 all... 148.0.7778.96 之前的 iOS 版 Google Chrome 中的行動版免... | 2026-05-06 |
| CVE-2026-7896 | 高 | 8.8 | Chrome | Integer overflow in Blink in Google Chrome prior to 148.0.7778.96 allowed a... 148.0.7778.96 之前的 Google Chrome 中的 Blink 中的整數... | 2026-05-06 |
| CVE-2026-7363 | 高 | 8.8 | Linux OS Chrome | Use after free in Canvas in Google Chrome on Linux, ChromeOS prior to 147.0... Linux 上的 Google Chrome 中的 Canvas 中的免費使用後,14... | 2026-04-28 |
| CVE-2026-7361 | 高 | 8.8 | Chrome | Use after free in iOS in Google Chrome prior to 147.0.7727.138 allowed a re... 在 147.0.7727.138 之前的 iOS 中的 Google Chrome 中使用... | 2026-04-28 |
| CVE-2026-7360 | 低 | 3.1 | Chrome | Insufficient validation of untrusted input. in Compositing in Google Chrome... 對不受信任的輸入驗證不充分。 147.0.7727.138 之前的 Goog... | 2026-04-28 |
| CVE-2026-7359 | 高 | 8.8 | Chrome | Use after free in ANGLE in Google Chrome prior to 147.0.7727.138 allowed a... 在 147.0.7727.138 之前的 Google Chrome ANGLE 中使用 aft... | 2026-04-28 |
| CVE-2026-7358 | 高 | 8.8 | Chrome | Use after free in Animation in Google Chrome prior to 147.0.7727.138 allowe... 在 147.0.7727.138 之前的 Google Chrome 動畫中使用 after... | 2026-04-28 |
| CVE-2026-7357 | 高 | 7.5 | Chrome | Use after free in GPU in Google Chrome prior to 147.0.7727.138 allowed a re... 147.0.7727.138 之前的 Google Chrome 中的 GPU 中的釋放後... | 2026-04-28 |
| CVE-2026-7356 | 高 | 8.8 | Chrome | Use after free in Navigation in Google Chrome prior to 147.0.7727.138 allow... 在 147.0.7727.138 之前的 Google Chrome 導覽中使用 after... | 2026-04-28 |
| CVE-2026-7355 | 高 | 8.8 | Chrome | Use after free in Media in Google Chrome prior to 147.0.7727.138 allowed a... 在 147.0.7727.138 之前的 Google Chrome 媒體中使用 after... | 2026-04-28 |
| CVE-2026-7354 | 高 | 8.8 | Chrome | Out of bounds read and write in Angle in Google Chrome prior to 147.0.7727.... 147.0.7727.138 之前的 Google Chrome 中 Angle 的越界讀寫... | 2026-04-28 |
| CVE-2026-7353 | 高 | 8.3 | Chrome | Heap buffer overflow in Skia in Google Chrome prior to 147.0.7727.138 allow... 147.0.7727.138 之前的 Google Chrome 中的 Skia 中的堆緩... | 2026-04-28 |
| CVE-2026-7352 | 高 | 8.3 | Chrome | Use after free in Media in Google Chrome on Android prior to 147.0.7727.138... 在 147.0.7727.138 之前的 Android 上的 Google Chrome 媒... | 2026-04-28 |
| CVE-2026-7351 | 低 | 3.1 | Chrome | Race in MHTML in Google Chrome prior to 147.0.7727.138 allowed an attacker... 147.0.7727.138 之前的 Google Chrome 中的 MHTML 競爭允許... | 2026-04-28 |
| CVE-2026-7350 | 高 | 8.3 | Chrome | Use after free in WebMIDI in Google Chrome prior to 147.0.7727.138 allowed... 147.0.7727.138 之前的 Google Chrome 中的 WebMIDI 中的釋... | 2026-04-28 |
| CVE-2026-7349 | 高 | 7.5 | Chrome | Use after free in Cast in Google Chrome prior to 147.0.7727.138 allowed an... 147.0.7727.138 之前的 Google Chrome 中的 Cast 中的釋放... | 2026-04-28 |
| CVE-2026-7348 | 高 | 8.8 | Chrome | Use after free in Codecs in Google Chrome prior to 147.0.7727.138 allowed a... 在 147.0.7727.138 之前的 Google Chrome 編解碼器中使用 a... | 2026-04-28 |
| CVE-2026-7347 | 高 | 8.1 | Chrome | Use after free in Chromoting in Google Chrome prior to 147.0.7727.138 allow... 在 147.0.7727.138 之前的 Google Chrome Chromoting 中使... | 2026-04-28 |
| CVE-2026-7346 | 高 | 8.1 | Chrome | Inappropriate implementation in Tint in Google Chrome prior to 147.0.7727.1... 147.0.7727.138 之前的 Google Chrome 中的 Tint 實施不當... | 2026-04-28 |
| CVE-2026-7345 | 高 | 8.3 | Chrome | Insufficient validation of untrusted input in Feedback in Google Chrome pri... 在 147.0.7727.138 之前的版本中,Google Chrome 中的回饋... | 2026-04-28 |
| CVE-2026-7344 | 高 | 8.8 | Chrome | Use after free in Accessibility in Google Chrome on Windows prior to 147.0.... 147.0.7727.138 之前的 Windows 上 Google Chrome 的輔助功... | 2026-04-28 |
| CVE-2026-7343 | 高 | 7.5 | Chrome | Use after free in Views in Google Chrome on Windows prior to 147.0.7727.138... 147.0.7727.138 之前的 Windows 上的 Google Chrome 視圖中... | 2026-04-28 |
| CVE-2026-7342 | 高 | 8.8 | Chrome | Use after free in WebView in Google Chrome on Android prior to 147.0.7727.1... 在 147.0.7727.138 之前的 Android 上的 Google Chrome 中... | 2026-04-28 |
| CVE-2026-7341 | 高 | 8.8 | Chrome | Use after free in WebRTC in Google Chrome prior to 147.0.7727.138 allowed a... 在 147.0.7727.138 之前版本的 Google Chrome 中的 WebRTC... | 2026-04-28 |
| CVE-2026-7340 | 中 | 4.3 | Chrome | Integer overflow in ANGLE in Google Chrome on Windows prior to 147.0.7727.1... 147.0.7727.138 之前的 Windows 上的 Google Chrome 中的 A... | 2026-04-28 |
| CVE-2026-7339 | 高 | 8.8 | Chrome | Heap buffer overflow in WebRTC in Google Chrome prior to 147.0.7727.138 all... 147.0.7727.138 之前的 Google Chrome 中的 WebRTC 中的堆... | 2026-04-28 |
| CVE-2026-7338 | 高 | 7.5 | Chrome | Use after free in Cast in Google Chrome prior to 147.0.7727.138 allowed an... 147.0.7727.138 先前版本的 Google Chrome 中的 Cast 中的... | 2026-04-28 |
| CVE-2026-7337 | 高 | 8.8 | Chrome | Type Confusion in V8 in Google Chrome prior to 147.0.7727.138 allowed a rem... 147.0.7727.138 先前版本的 Google Chrome V8 中的類型混淆... | 2026-04-28 |
| CVE-2026-7336 | 高 | 8.8 | Chrome | Use after free in WebRTC in Google Chrome prior to 147.0.7727.138 allowed a... 在 147.0.7727.138 之前版本的 Google Chrome 中的 WebRTC... | 2026-04-28 |
| CVE-2026-7335 | 高 | 8.8 | Chrome | Use after free in media in Google Chrome prior to 147.0.7727.138 allowed a... 在 147.0.7727.138 之前的 Google Chrome 媒體中使用 after... | 2026-04-28 |
| CVE-2026-7334 | 高 | 8.8 | Chrome | Use after free in Views in Google Chrome on Mac prior to 147.0.7727.138 all... 在 147.0.7727.138 之前的 Mac 上的 Google Chrome 視圖中... | 2026-04-28 |
| CVE-2026-7333 | 嚴重 | 9.6 | Chrome | Use after free in GPU in Google Chrome prior to 147.0.7727.138 allowed a re... 147.0.7727.138 之前的 Google Chrome 中的 GPU 中的釋放後... | 2026-04-28 |
| CVE-2026-32046 | 中 | 5.3 | Chrome | OpenClaw versions prior to 2026.2.21 contain an improper sandbox configurat... 2026.2.21 之前的 OpenClaw 版本包含不正確的沙箱配置漏洞... | 2026-03-21 |
| CVE-2026-33081 | 中 | 5.8 | Chrome | PinchTab is a standalone HTTP server that gives AI agents direct control ov... PinchTab 是一個獨立的 HTTP 伺服器,讓 AI 代理直接控制 C... | 2026-03-20 |
| CVE-2026-2313 | 高 | 8.8 | Chrome | Use after free in CSS in Google Chrome prior to 145.0.7632.45 allowed a rem... 在 145.0.7632.45 之前的 Google Chrome 中使用 after free... | 2026-02-11 |
| CVE-2026-1862 | 高 | 8.8 | Chrome | Type Confusion in V8 in Google Chrome prior to 144.0.7559.132 allowed a rem... 144.0.7559.132 之前的 Google Chrome V8 中的類型混淆允許... | 2026-02-03 |
| CVE-2026-1861 | 高 | 8.8 | Chrome | Heap buffer overflow in libvpx in Google Chrome prior to 144.0.7559.132 all... 144.0.7559.132 之前的 Google Chrome 中的 libvpx 中的堆... | 2026-02-03 |
| CVE-2026-1504 | 中 | 6.5 | Chrome | Inappropriate implementation in Background Fetch API in Google Chrome prior... 144.0.7559.110 之前的 Google Chrome 中的後台獲取 API 中... | 2026-01-27 |
| CVE-2026-0908 | 高 | 8.8 | Chrome | Use after free in ANGLE in Google Chrome prior to 144.0.7559.59 allowed a r... 在 144.0.7559.59 之前的 Google Chrome 中使用 after free... | 2026-01-20 |
| CVE-2026-0907 | 嚴重 | 9.8 | Chrome | Incorrect security UI in Split View in Google Chrome prior to 144.0.7559.59... 144.0.7559.59 之前的 Google Chrome 中分割視圖中的安全 U... | 2026-01-20 |
| CVE-2026-0906 | 嚴重 | 9.8 | Chrome | Incorrect security UI in Google Chrome on Android prior to 144.0.7559.59 a... 144.0.7559.59 之前的 Android 版 Google Chrome 中不正確... | 2026-01-20 |
| CVE-2026-0905 | 嚴重 | 9.8 | Chrome | Insufficient policy enforcement in Network in Google Chrome prior to 144.0.... 144.0.7559.59 之前的 Google Chrome 網路中的策略執行不充... | 2026-01-20 |
| CVE-2026-0904 | 中 | 5.4 | Chrome | Incorrect security UI in Digital Credentials in Google Chrome prior to 144.... 144.0.7559.59 之前的 Google Chrome 中的數位憑證中的安全... | 2026-01-20 |
| CVE-2026-0903 | 中 | 5.4 | Chrome | Inappropriate implementation in Downloads in Google Chrome on Windows prior... 144.0.7559.59 之前的 Windows 上的 Google Chrome 下載中... | 2026-01-20 |
| CVE-2026-0902 | 高 | 8.8 | Chrome | Inappropriate implementation in V8 in Google Chrome prior to 144.0.7559.59... 144.0.7559.59 之前的 Google Chrome V8 中的不當實作允許... | 2026-01-20 |
| CVE-2026-0901 | 中 | 5.4 | Chrome | Inappropriate implementation in Blink in Google Chrome on Android prior to... 144.0.7559.59 之前的 Android 版 Google Chrome 中的 Blin... | 2026-01-20 |
| CVE-2026-0900 | 高 | 8.8 | Chrome | Inappropriate implementation in V8 in Google Chrome prior to 144.0.7559.59... 144.0.7559.59 之前的 Google Chrome 中的 V8 中的不當實作... | 2026-01-20 |
| CVE-2026-0899 | 高 | 8.8 | Chrome | Out of bounds memory access in V8 in Google Chrome prior to 144.0.7559.59 a... 144.0.7559.59 之前的 Google Chrome V8 中的越界記憶體存... | 2026-01-20 |
| CVE-2026-0628 | 高 | 8.8 | Chrome | Insufficient policy enforcement in WebView tag in Google Chrome prior to 14... 143.0.7499.192 之前的 Google Chrome 中 WebView 標記中的... | 2026-01-07 |