社区情报
来自安全社区、研究机构和开源生态的情报。
-
CVE-2026-15928 | XMLRPC-C up to 1.67.01 Error Page cross site scripting
A vulnerability categorized as <a href="https://vuldb.com/kb/risk">problematic</a> has been discovered in <a href="https://vuldb.com/product/xmlrpc-c">XMLRPC-C up to 1.67.01</a>. The affected element is an unknown function of the component <em>Error Page</em>. Executing a manipulation can lead to cross site scripting. This vulnerability is handled as <a hre…
A vulnerability categorized as <a href="https://vuldb.com/kb/risk">problematic</a> has been discovered in <a href="https://vuldb.com/product/xmlrpc-c">XMLRPC-C up to 1.67.01</a>. The affected element is an unknown function of the component <em>Error Page</em>. Executing a manipulation can lead to cross site scripting. This vulnerability is handled as <a hreA vulnerability categorized as <a href="https://vuldb.com/kb/risk">problematic</a> has been discovered in <a href="https://vuldb.com/product/xmlrpc-c">XMLRPC-C up to 1.67.01</a>. The affected element is an unknown function of the component <em>Error Page</em>. Executing a manipulation can lead to cross site scripting. This vulnerability is handled as <a href="https://vuldb.com/cve/CVE-2026-15928">CVE-2026-15928</a>. The attack can be executed remotely. There is not any exploit available.扩展字段
{ "raw_pub_date": "Mon, 27 Jul 2026 04:50:53 +0200" } -
CVE-2026-57990 | Microsoft Edge information disclosure
A vulnerability was found in <a href="https://vuldb.com/product/microsoft:edge">Microsoft Edge</a>. It has been rated as <a href="https://vuldb.com/kb/risk">problematic</a>. Impacted is an unknown function. Performing a manipulation results in information disclosure. This vulnerability is known as <a href="https://vuldb.com/cve/CVE-2026-57990">CVE-2026-5799…
A vulnerability was found in <a href="https://vuldb.com/product/microsoft:edge">Microsoft Edge</a>. It has been rated as <a href="https://vuldb.com/kb/risk">problematic</a>. Impacted is an unknown function. Performing a manipulation results in information disclosure. This vulnerability is known as <a href="https://vuldb.com/cve/CVE-2026-57990">CVE-2026-5799A vulnerability was found in <a href="https://vuldb.com/product/microsoft:edge">Microsoft Edge</a>. It has been rated as <a href="https://vuldb.com/kb/risk">problematic</a>. Impacted is an unknown function. Performing a manipulation results in information disclosure. This vulnerability is known as <a href="https://vuldb.com/cve/CVE-2026-57990">CVE-2026-57990</a>. Remote exploitation of the attack is possible. No exploit is available. To fix this issue, it is recommended to deploy a patch.扩展字段
{ "raw_pub_date": "Sun, 26 Jul 2026 20:03:37 +0200" } -
CVE-2026-57989 | Microsoft Edge up to 150.0.4078.80 improper authorization
A vulnerability was found in <a href="https://vuldb.com/product/microsoft:edge">Microsoft Edge</a>. It has been declared as <a href="https://vuldb.com/kb/risk">problematic</a>. This issue affects some unknown processing. Such manipulation leads to improper authorization. This vulnerability is traded as <a href="https://vuldb.com/cve/CVE-2026-57989">CVE-2026…
A vulnerability was found in <a href="https://vuldb.com/product/microsoft:edge">Microsoft Edge</a>. It has been declared as <a href="https://vuldb.com/kb/risk">problematic</a>. This issue affects some unknown processing. Such manipulation leads to improper authorization. This vulnerability is traded as <a href="https://vuldb.com/cve/CVE-2026-57989">CVE-2026A vulnerability was found in <a href="https://vuldb.com/product/microsoft:edge">Microsoft Edge</a>. It has been declared as <a href="https://vuldb.com/kb/risk">problematic</a>. This issue affects some unknown processing. Such manipulation leads to improper authorization. This vulnerability is traded as <a href="https://vuldb.com/cve/CVE-2026-57989">CVE-2026-57989</a>. The attack may be launched remotely. There is no exploit available. It is recommended to upgrade the affected component.扩展字段
{ "raw_pub_date": "Sun, 26 Jul 2026 20:02:15 +0200" } -
CVE-2026-17501 | ggml-org llama.cpp e15efe0 JSON-Schema-to-GBNF Conversion json-schema-to-grammar.cpp transform allocation of resources (Issue 25283)
A vulnerability was found in <a href="https://vuldb.com/product/ggml-org:llama">ggml-org llama.cpp e15efe0</a>. It has been classified as <a href="https://vuldb.com/kb/risk">critical</a>. This vulnerability affects the function <code>transform</code> of the file <em>common/json-schema-to-grammar.cpp</em> of the component <em>JSON-Schema-to-GBNF Conversion</e…
A vulnerability was found in <a href="https://vuldb.com/product/ggml-org:llama">ggml-org llama.cpp e15efe0</a>. It has been classified as <a href="https://vuldb.com/kb/risk">critical</a>. This vulnerability affects the function <code>transform</code> of the file <em>common/json-schema-to-grammar.cpp</em> of the component <em>JSON-Schema-to-GBNF Conversion</eA vulnerability was found in <a href="https://vuldb.com/product/ggml-org:llama">ggml-org llama.cpp e15efe0</a>. It has been classified as <a href="https://vuldb.com/kb/risk">critical</a>. This vulnerability affects the function <code>transform</code> of the file <em>common/json-schema-to-grammar.cpp</em> of the component <em>JSON-Schema-to-GBNF Conversion</em>. This manipulation causes allocation of resources. This vulnerability appears as <a href="https://vuldb.com/cve/CVE-2026-17501">CVE-2026-17501</a>. The attack may be initiated remotely. There is no available exploit. The pull request to fix this issue awaits acceptance.扩展字段
{ "raw_pub_date": "Sun, 26 Jul 2026 19:39:00 +0200" } -
CVE-2026-17500 | ggml-org llama.cpp d006858/e15efe0 json-schema-to-grammar.cpp _visit_pattern null pointer dereference (Issue 25284)
A vulnerability was found in <a href="https://vuldb.com/product/ggml-org:llama">ggml-org llama.cpp d006858/e15efe0</a> and classified as <a href="https://vuldb.com/kb/risk">problematic</a>. This affects the function <code>_visit_pattern</code> of the file <em>common/json-schema-to-grammar.cpp</em>. The manipulation results in null pointer dereference. This …
A vulnerability was found in <a href="https://vuldb.com/product/ggml-org:llama">ggml-org llama.cpp d006858/e15efe0</a> and classified as <a href="https://vuldb.com/kb/risk">problematic</a>. This affects the function <code>_visit_pattern</code> of the file <em>common/json-schema-to-grammar.cpp</em>. The manipulation results in null pointer dereference. ThisA vulnerability was found in <a href="https://vuldb.com/product/ggml-org:llama">ggml-org llama.cpp d006858/e15efe0</a> and classified as <a href="https://vuldb.com/kb/risk">problematic</a>. This affects the function <code>_visit_pattern</code> of the file <em>common/json-schema-to-grammar.cpp</em>. The manipulation results in null pointer dereference. This vulnerability is reported as <a href="https://vuldb.com/cve/CVE-2026-17500">CVE-2026-17500</a>. The attack can be launched remotely. No exploit exists. The pull request to fix this issue awaits acceptance.扩展字段
{ "raw_pub_date": "Sun, 26 Jul 2026 19:38:55 +0200" } -
CVE-2026-57978 | Microsoft Edge up to 150.0.4078.80 improper authorization
A vulnerability has been found in <a href="https://vuldb.com/product/microsoft:edge">Microsoft Edge</a> and classified as <a href="https://vuldb.com/kb/risk">critical</a>. Affected by this issue is some unknown functionality. The manipulation leads to improper authorization. This vulnerability is documented as <a href="https://vuldb.com/cve/CVE-2026-57978">…
A vulnerability has been found in <a href="https://vuldb.com/product/microsoft:edge">Microsoft Edge</a> and classified as <a href="https://vuldb.com/kb/risk">critical</a>. Affected by this issue is some unknown functionality. The manipulation leads to improper authorization. This vulnerability is documented as <a href="https://vuldb.com/cve/CVE-2026-57978">A vulnerability has been found in <a href="https://vuldb.com/product/microsoft:edge">Microsoft Edge</a> and classified as <a href="https://vuldb.com/kb/risk">critical</a>. Affected by this issue is some unknown functionality. The manipulation leads to improper authorization. This vulnerability is documented as <a href="https://vuldb.com/cve/CVE-2026-57978">CVE-2026-57978</a>. The attack can be initiated remotely. There is not any exploit available. The affected component should be upgraded.扩展字段
{ "raw_pub_date": "Sun, 26 Jul 2026 19:31:18 +0200" } -
CVE-2026-61548 | rsyslog up to 8.1908.0 mmpstrucdata stack-based overflow
A vulnerability, which was classified as <a href="https://vuldb.com/kb/risk">critical</a>, was found in <a href="https://vuldb.com/product/rsyslog">rsyslog</a>. Affected by this vulnerability is the function <code>mmpstrucdata</code>. Executing a manipulation can lead to stack-based buffer overflow. This vulnerability is registered as <a href="https://vuldb…
A vulnerability, which was classified as <a href="https://vuldb.com/kb/risk">critical</a>, was found in <a href="https://vuldb.com/product/rsyslog">rsyslog</a>. Affected by this vulnerability is the function <code>mmpstrucdata</code>. Executing a manipulation can lead to stack-based buffer overflow. This vulnerability is registered as <a href="https://vuldbA vulnerability, which was classified as <a href="https://vuldb.com/kb/risk">critical</a>, was found in <a href="https://vuldb.com/product/rsyslog">rsyslog</a>. Affected by this vulnerability is the function <code>mmpstrucdata</code>. Executing a manipulation can lead to stack-based buffer overflow. This vulnerability is registered as <a href="https://vuldb.com/cve/CVE-2026-61548">CVE-2026-61548</a>. The attack requires access to the local network. No exploit is available. You should upgrade the affected component.扩展字段
{ "raw_pub_date": "Sun, 26 Jul 2026 18:30:36 +0200" } -
CVE-2026-59933 | PHPOffice PhpSpreadsheet memory allocation
A vulnerability, which was classified as <a href="https://vuldb.com/kb/risk">problematic</a>, has been found in <a href="https://vuldb.com/product/phpoffice:phpspreadsheet">PHPOffice PhpSpreadsheet</a>. Affected is an unknown function. Performing a manipulation results in uncontrolled memory allocation. This vulnerability is cataloged as <a href="https://vu…
A vulnerability, which was classified as <a href="https://vuldb.com/kb/risk">problematic</a>, has been found in <a href="https://vuldb.com/product/phpoffice:phpspreadsheet">PHPOffice PhpSpreadsheet</a>. Affected is an unknown function. Performing a manipulation results in uncontrolled memory allocation. This vulnerability is cataloged as <a href="https://vuA vulnerability, which was classified as <a href="https://vuldb.com/kb/risk">problematic</a>, has been found in <a href="https://vuldb.com/product/phpoffice:phpspreadsheet">PHPOffice PhpSpreadsheet</a>. Affected is an unknown function. Performing a manipulation results in uncontrolled memory allocation. This vulnerability is cataloged as <a href="https://vuldb.com/cve/CVE-2026-59933">CVE-2026-59933</a>. The attack must originate from the local network. There is no exploit available. It is advisable to upgrade the affected component.扩展字段
{ "raw_pub_date": "Sun, 26 Jul 2026 18:29:48 +0200" }