SecLens 情报中心

网安资讯,一网打尽。汇集权威漏洞通告与行业要闻,结合分组浏览、智能过滤、RSS订阅 和 Webhook 推送,多通道拓展您的安全情报视野。

全部

最新采集的全量资讯流

  • CVE-2026-64651 | Vercel @ai-sdk/harness-opencode up to 1.0.28 Relay host-tool-mcp.mjs improper authorization

    发布时间 2026-07-21 05:51 (UTC+08:00) 抓取时间 2026-07-21 06:01 (UTC+08:00)

    A vulnerability marked as <a href="https://vuldb.com/kb/risk">problematic</a> has been reported in <a href="https://vuldb.com/product/vercel:_ai-sdk">Vercel @ai-sdk and harness-opencode up to 1.0.28</a>. The impacted element is an unknown function of the file <em>host-tool-mcp.mjs</em> of the component <em>Relay</em>. The manipulation leads to improper autho

    扩展字段
    {
      "raw_pub_date": "Mon, 20 Jul 2026 23:51:04 +0200"
    }
    全部来源 CVE-2026-64651 cve official_bulletin
  • CVE-2026-64650 | Vercel harness-codex up to 1.0.28 Relay improper authorization

    发布时间 2026-07-21 05:49 (UTC+08:00) 抓取时间 2026-07-21 06:01 (UTC+08:00)

    A vulnerability labeled as <a href="https://vuldb.com/kb/risk">critical</a> has been found in <a href="https://vuldb.com/product/vercel:harness-codex">Vercel harness-codex up to 1.0.28</a>. The affected element is an unknown function of the component <em>Relay</em>. Executing a manipulation can lead to improper authorization. This vulnerability is tracked a

    扩展字段
    {
      "raw_pub_date": "Mon, 20 Jul 2026 23:49:17 +0200"
    }
    全部来源 CVE-2026-64650 cve official_bulletin
  • CVE-2024-51316 | Tenda TX9 22.03.02.20 goform /goform/SetOnlineDevName update_dev_name denial of service

    发布时间 2026-07-21 05:41 (UTC+08:00) 抓取时间 2026-07-21 06:01 (UTC+08:00)

    A vulnerability identified as <a href="https://vuldb.com/kb/risk">critical</a> has been detected in <a href="https://vuldb.com/product/tenda:tx9">Tenda TX9 22.03.02.20</a>. Impacted is the function <code>update_dev_name</code> of the file <em>/goform/SetOnlineDevName</em> of the component <em>goform</em>. Performing a manipulation results in denial of servic

    扩展字段
    {
      "raw_pub_date": "Mon, 20 Jul 2026 23:41:40 +0200"
    }
    全部来源 CVE-2024-51316 cve official_bulletin
  • CVE-2024-51315 | Tenda TX9 22.03.02.20 goform /goform/SetOnlineDevName sub_425964 stack-based overflow

    发布时间 2026-07-21 05:40 (UTC+08:00) 抓取时间 2026-07-21 06:01 (UTC+08:00)

    A vulnerability categorized as <a href="https://vuldb.com/kb/risk">very critical</a> has been discovered in <a href="https://vuldb.com/product/tenda:tx9">Tenda TX9 22.03.02.20</a>. This issue affects the function <code>sub_425964</code> of the file <em>/goform/SetOnlineDevName</em> of the component <em>goform</em>. Such manipulation leads to stack-based buff

    扩展字段
    {
      "raw_pub_date": "Mon, 20 Jul 2026 23:40:41 +0200"
    }
    全部来源 CVE-2024-51315 cve official_bulletin
  • CVE-2024-51314 | Tenda TX9 22.03.02.20 /goform/setMacFilterCfg sub_424CE0 stack-based overflow

    发布时间 2026-07-21 05:39 (UTC+08:00) 抓取时间 2026-07-21 06:01 (UTC+08:00)

    A vulnerability was found in <a href="https://vuldb.com/product/tenda:tx9">Tenda TX9 22.03.02.20</a>. It has been rated as <a href="https://vuldb.com/kb/risk">very critical</a>. This vulnerability affects the function <code>sub_424CE0</code> of the file <em>/goform/setMacFilterCfg</em>. This manipulation causes stack-based buffer overflow. The identificatio

    扩展字段
    {
      "raw_pub_date": "Mon, 20 Jul 2026 23:39:33 +0200"
    }
    全部来源 CVE-2024-51314 cve official_bulletin
  • CVE-2024-51312 | Tenda TX9 22.03.02.20 SetStaticRouteCfg sub_42EEE0 stack-based overflow

    发布时间 2026-07-21 05:38 (UTC+08:00) 抓取时间 2026-07-21 06:01 (UTC+08:00)

    A vulnerability was found in <a href="https://vuldb.com/product/tenda:tx9">Tenda TX9 22.03.02.20</a>. It has been declared as <a href="https://vuldb.com/kb/risk">very critical</a>. This affects the function <code>sub_42EEE0</code> of the file <em>/goform/SetStaticRouteCfg</em> of the component <em>SetStaticRouteCfg</em>. The manipulation results in stack-bas

    扩展字段
    {
      "raw_pub_date": "Mon, 20 Jul 2026 23:38:32 +0200"
    }
    全部来源 CVE-2024-51312 cve official_bulletin
  • CVE-2026-44510 | RsyncProject rsync up to 3.4.2 recv_files out-of-bounds

    发布时间 2026-07-21 05:37 (UTC+08:00) 抓取时间 2026-07-21 06:01 (UTC+08:00)

    A vulnerability was found in <a href="https://vuldb.com/product/rsyncproject:rsync">RsyncProject rsync up to 3.4.2</a>. It has been classified as <a href="https://vuldb.com/kb/risk">problematic</a>. Affected by this issue is some unknown functionality of the component <em>recv_files</em>. The manipulation leads to out-of-bounds read. This vulnerability is u

    扩展字段
    {
      "raw_pub_date": "Mon, 20 Jul 2026 23:37:53 +0200"
    }
    全部来源 CVE-2026-44510 cve official_bulletin
  • CVE-2026-47133 | craigjbass ClearanceKit up to 5.0.9 SQLite policy store store.db Local Privilege Escalation

    发布时间 2026-07-21 05:36 (UTC+08:00) 抓取时间 2026-07-21 06:01 (UTC+08:00)

    A vulnerability was found in <a href="https://vuldb.com/product/craigjbass:clearancekit">craigjbass ClearanceKit up to 5.0.9</a> and classified as <a href="https://vuldb.com/kb/risk">critical</a>. Affected by this vulnerability is an unknown functionality of the file <em>/Library/Application Support/clearancekit/store.db</em> of the component <em>SQLite poli

    扩展字段
    {
      "raw_pub_date": "Mon, 20 Jul 2026 23:36:50 +0200"
    }
    全部来源 CVE-2026-47133 cve official_bulletin