Aggregator
DevOps 安全悖论:为何交付越快,往往风险越高
1 month 3 weeks ago
环境异常 当前环境异常,完成验证后即可继续访问。 去验证
利用栈溢出伪造动态链接结构实现 ret2dlresolve 攻击
1 month 3 weeks ago
本文分析了在 No RELRO 和 Partial RELRO 保护下,通过栈溢出漏洞伪造_DYNAMIC、重定位表及符号表实现 ret2dlresolve 攻击的方法。文章详细阐述了修改字符串表地址与构造虚假重定位项两种利用链,成功绕过限制执行 system 函数获取 Shell。
某攻防钓鱼样本分析
1 month 3 weeks ago
文章详细分析了钓鱼样本执行从上线到维权,最后拿到CS的shellcode,文末有彩蛋
vim 1-click RCE 和 neovim 未修补漏洞的简单分析
1 month 3 weeks ago
有关于两个linux常见终端文本编辑器的漏洞分析....
基于 WireGuard 与 Caddy 构建红队应用层流量重定向器
1 month 3 weeks ago
本文介绍利用 WireGuard 组建加密隧道并结合 Caddy 实现应用层 TLS 卸载的流量重定向架构。通过配置反向代理规则将特定路径流量转发至内网 C2 服务器,有效隐藏真实 IP 并伪装业务流量特征。该方法相比传输层透传更能规避防火墙对非标准加密流量的检测。
2026阿里白帽大会 - Agent安全(智能体时代的攻防新范式)
1 month 3 weeks ago
2026阿里白帽大会 - Agent安全(智能体时代的攻防新范式)
CVE-2026-22738-Spring AI SimpleVectorStore 中的 SpEL 注入导致远程代码执行漏洞分析
1 month 3 weeks ago
Spring AI SpEL 注入 RCE
派早报:Google 发布 Fitbit Air 等
1 month 3 weeks ago
Google 发布 Fitbit Air5 月 7 日,谷歌正式发布 Fitbit Air,这是一款无屏幕、无实体按键的极简健身手环,主打无感健康监测。Fitbit Air 机身重量为 5.2 克,搭
顺口溜中的方法论
1 month 3 weeks ago
有一句老话,几乎每个人都听过:读万卷书,不如行万里路;行万里路,不如阅人无数;阅人无数,不如名师指路;名师指路
CVE-2026-33079 | lepture mistune up to 3.2.0 Markdown Parser redos (GHSA-8mp2-v27r-99xp / Nessus ID 313071)
1 month 3 weeks ago
A vulnerability was found in lepture mistune up to 3.2.0. It has been declared as problematic. This affects an unknown function of the component Markdown Parser. The manipulation results in inefficient regular expression complexity.
This vulnerability is known as CVE-2026-33079. It is possible to launch the attack remotely. No exploit is available.
vuldb.com
CVE-2026-6180 | PaperCut NG/MF up to 24.1.8/25.0.9 toctou (Nessus ID 313100)
1 month 3 weeks ago
A vulnerability classified as critical was found in PaperCut NG and MF up to 24.1.8/25.0.9. This affects an unknown function. The manipulation results in time-of-check time-of-use.
This vulnerability is identified as CVE-2026-6180. The attack can be executed remotely. There is not any exploit available.
Upgrading the affected component is advised.
vuldb.com
CVE-2026-6418 | PaperCut NG/MF up to 25.0.10 Account Synchronization absolute path traversal (Nessus ID 313101)
1 month 3 weeks ago
A vulnerability, which was classified as problematic, was found in PaperCut NG and MF up to 25.0.10. Affected is an unknown function of the component Account Synchronization Component. Such manipulation leads to absolute path traversal.
This vulnerability is listed as CVE-2026-6418. The attack may be performed from remote. There is no available exploit.
You should upgrade the affected component.
vuldb.com
CVE-2026-41674 | xmldom prior 0.8.13/0.9.10 internalSubset/publicId/systemId xml injection (GHSA-f6ww-3ggp-fr8h / Nessus ID 313072)
1 month 3 weeks ago
A vulnerability, which was classified as critical, was found in xmldom. This affects an unknown function. The manipulation of the argument internalSubset/publicId/systemId results in xml injection.
This vulnerability is identified as CVE-2026-41674. The attack can be executed remotely. There is not any exploit available.
You should upgrade the affected component.
vuldb.com
CVE-2026-8088 | OSGeo gdal up to 3.13.0dev-4 GDapi.c GDfieldinfo out-of-bounds (Issue 14379 / EUVD-2026-28436)
1 month 3 weeks ago
A vulnerability labeled as problematic has been found in OSGeo gdal up to 3.13.0dev-4. The affected element is the function GDfieldinfo of the file frmts/hdf4/hdf-eos/GDapi.c. Executing a manipulation can lead to out-of-bounds read.
This vulnerability is registered as CVE-2026-8088. The attack needs to be launched locally. Furthermore, an exploit is available.
The affected component should be upgraded.
vuldb.com
CVE-2026-39817 | cmd-go up to 1.25.9/1.26.2 on Go Archive path traversal (EUVD-2026-28421)
1 month 3 weeks ago
A vulnerability, which was classified as critical, was found in cmd-go up to 1.25.9/1.26.2 on Go. Affected by this vulnerability is an unknown functionality of the component Archive Handler. The manipulation results in path traversal.
This vulnerability is cataloged as CVE-2026-39817. The attack may be launched remotely. There is no exploit available.
You should upgrade the affected component.
vuldb.com
CVE-2026-39826 | html-template up to 1.25.9/1.26.2 on Go Type escape output (EUVD-2026-28426)
1 month 3 weeks ago
A vulnerability was found in html-template up to 1.25.9/1.26.2 on Go and classified as critical. This affects an unknown part. Such manipulation of the argument Type leads to escaping of output.
This vulnerability is documented as CVE-2026-39826. The attack can be executed remotely. There is not any exploit available.
It is suggested to upgrade the affected component.
vuldb.com
CVE-2026-39820 | net-mail up to 1.25.9/1.26.2 on Go algorithmic complexity (EUVD-2026-28423)
1 month 3 weeks ago
A vulnerability marked as problematic has been reported in net-mail up to 1.25.9/1.26.2 on Go. This impacts an unknown function. Performing a manipulation results in inefficient algorithmic complexity.
This vulnerability was named CVE-2026-39820. The attack may be initiated remotely. There is no available exploit.
It is suggested to upgrade the affected component.
vuldb.com
CVE-2026-39836 | net up to 1.25.9/1.26.2 on Go Dial/LookupPort uncaught exception (EUVD-2026-28427)
1 month 3 weeks ago
A vulnerability described as problematic has been identified in net up to 1.25.9/1.26.2 on Go. Affected is the function Dial/LookupPort. Executing a manipulation can lead to uncaught exception.
The identification of this vulnerability is CVE-2026-39836. The attack may be launched remotely. There is no exploit available.
Upgrading the affected component is recommended.
vuldb.com
CVE-2026-8115 | gyoridavid short-video-maker up to 1.3.4 REST API rest.ts req.params.tmpFile path traversal (Issue 73 / EUVD-2026-28472)
1 month 3 weeks ago
A vulnerability, which was classified as problematic, was found in gyoridavid short-video-maker up to 1.3.4. This affects an unknown part of the file src/server/routers/rest.ts of the component REST API. The manipulation of the argument req.params.tmpFile results in path traversal.
This vulnerability is reported as CVE-2026-8115. The attack can be launched remotely. Moreover, an exploit is present.
The project was informed of the problem early through an issue report but has not responded yet.
vuldb.com