SecLens 情报中心

网安资讯,一网打尽。汇集权威漏洞通告与行业要闻,结合分组浏览、智能过滤、RSS订阅 和 Webhook 推送,多通道拓展您的安全情报视野。

社区情报

来自安全社区、研究机构和开源生态的情报。

  • CVE-2026-59845 | Red Hat Enterprise Linux libssh fork denial of service

    发布时间 2026-07-21 20:26 (UTC+08:00) 抓取时间 2026-07-21 21:01 (UTC+08:00)

    A vulnerability, which was classified as <a href="https://vuldb.com/kb/risk">problematic</a>, was found in <a href="https://vuldb.com/product/red_hat:enterprise_linux">Red Hat Enterprise Linux</a>. This affects the function <code>fork</code> of the component <em>libssh</em>. The manipulation results in denial of service. This vulnerability is cataloged as <

    扩展字段
    {
      "raw_pub_date": "Tue, 21 Jul 2026 14:26:48 +0200"
    }
    VulDB CVE-2026-59845 cve official_bulletin
  • CVE-2026-64628 | getgrav up to 6.2.1 shortcode-core attribute handlers cross site scripting

    发布时间 2026-07-21 20:25 (UTC+08:00) 抓取时间 2026-07-21 21:01 (UTC+08:00)

    A vulnerability, which was classified as <a href="https://vuldb.com/kb/risk">problematic</a>, has been found in <a href="https://vuldb.com/product/getgrav:grav">getgrav grav up to 6.2.1</a>. Affected by this issue is some unknown functionality of the component <em>shortcode-core attribute handlers</em>. The manipulation leads to cross site scripting. This v

    扩展字段
    {
      "raw_pub_date": "Tue, 21 Jul 2026 14:25:44 +0200"
    }
    VulDB CVE-2026-64628 cve official_bulletin
  • CVE-2026-65007 | getgrav Api Plugin up to 1.0.7 API apiKeyGenerate/apiKeyRevoke improper authorization

    发布时间 2026-07-21 20:24 (UTC+08:00) 抓取时间 2026-07-21 21:01 (UTC+08:00)

    A vulnerability classified as <a href="https://vuldb.com/kb/risk">problematic</a> was found in <a href="https://vuldb.com/product/getgrav:api_plugin">getgrav Api Plugin up to 1.0.7</a>. Affected by this vulnerability is the function <code>apiKeyGenerate/apiKeyRevoke</code> of the component <em>API</em>. Executing a manipulation can lead to improper authoriza

    扩展字段
    {
      "raw_pub_date": "Tue, 21 Jul 2026 14:24:45 +0200"
    }
    VulDB CVE-2026-65007 cve official_bulletin
  • CVE-2026-16461 | Red Hat Enterprise Linux/OpenShift Container Platform rpcinfo rpcbdump stack-based overflow

    发布时间 2026-07-21 20:21 (UTC+08:00) 抓取时间 2026-07-21 21:01 (UTC+08:00)

    A vulnerability classified as <a href="https://vuldb.com/kb/risk">critical</a> has been found in <a href="https://vuldb.com/product/red_hat:enterprise_linux">Red Hat Enterprise Linux and OpenShift Container Platform</a>. Affected is the function <code>rpcbdump</code> of the component <em>rpcinfo</em>. Performing a manipulation results in stack-based buffer o

    扩展字段
    {
      "raw_pub_date": "Tue, 21 Jul 2026 14:21:45 +0200"
    }
    VulDB CVE-2026-16461 cve official_bulletin
  • CVE-2026-64627 | parse-community parse-server up to 9.10.0-alpha.3/8.6.84 GraphQL API information disclosure

    发布时间 2026-07-21 20:20 (UTC+08:00) 抓取时间 2026-07-21 21:01 (UTC+08:00)

    A vulnerability described as <a href="https://vuldb.com/kb/risk">problematic</a> has been identified in <a href="https://vuldb.com/product/parse-community:parse-server">parse-community parse-server up to 9.10.0-alpha.3/8.6.84</a>. This impacts an unknown function of the component <em>GraphQL API</em>. Such manipulation leads to information disclosure. This

    扩展字段
    {
      "raw_pub_date": "Tue, 21 Jul 2026 14:20:45 +0200"
    }
    VulDB CVE-2026-64627 cve official_bulletin
  • CVE-2026-65009 | OpenRemote up to 1.26.1 SyslogResource REST endpoint /syslog/event realm information disclosure

    发布时间 2026-07-21 20:19 (UTC+08:00) 抓取时间 2026-07-21 21:01 (UTC+08:00)

    A vulnerability marked as <a href="https://vuldb.com/kb/risk">problematic</a> has been reported in <a href="https://vuldb.com/product/openremote">OpenRemote up to 1.26.1</a>. This affects an unknown function of the file <em>/syslog/event</em> of the component <em>SyslogResource REST endpoint</em>. This manipulation of the argument <em>realm</em> causes infor

    扩展字段
    {
      "raw_pub_date": "Tue, 21 Jul 2026 14:19:43 +0200"
    }
    VulDB CVE-2026-65009 cve official_bulletin
  • CVE-2026-65008 | getgrav Grav up to 2.0.6 Blueprint Blueprint.php Blueprint::dynamicData code injection

    发布时间 2026-07-21 20:18 (UTC+08:00) 抓取时间 2026-07-21 21:01 (UTC+08:00)

    A vulnerability labeled as <a href="https://vuldb.com/kb/risk">problematic</a> has been found in <a href="https://vuldb.com/product/getgrav:grav">getgrav Grav up to 2.0.6</a>. The impacted element is the function <code>Blueprint::dynamicData</code> of the file <em>system/src/Grav/Common/Data/Blueprint.php</em> of the component <em>Blueprint</em>. The manipul

    扩展字段
    {
      "raw_pub_date": "Tue, 21 Jul 2026 14:18:48 +0200"
    }
    VulDB CVE-2026-65008 cve official_bulletin
  • CVE-2026-1617 | Turkmesh Communication Services Turkhotspot Loglama up to 5.1.2 sql injection

    发布时间 2026-07-21 19:48 (UTC+08:00) 抓取时间 2026-07-21 21:01 (UTC+08:00)

    A vulnerability identified as <a href="https://vuldb.com/kb/risk">critical</a> has been detected in <a href="https://vuldb.com/product/turkmesh_communication_services:turkhotspot_loglama">Turkmesh Communication Services Turkhotspot Loglama up to 5.1.2</a>. The affected element is an unknown function. The manipulation leads to sql injection. This vulnerabili

    扩展字段
    {
      "raw_pub_date": "Tue, 21 Jul 2026 13:48:38 +0200"
    }
    VulDB CVE-2026-1617 cve official_bulletin