Aggregator
电子书更新分享:Linux内核模块编程指南.pdf
1 month 3 weeks ago
Linux内核模块编程指南 中文PDF
余承东:问界 M9 Ultimate 5 月亮相;苹果新 CEO 首秀定档 9 月发布会;马斯克:无人驾驶车正式投产 | 极客早知道
1 month 3 weeks ago
DeepSeek V4 成 OpenClaw 默认模型;拯救 Win11!揭秘微软 Windows K2 宏伟计划;智能眼镜销量大涨;消息称三星 Galaxy WideFold 阔折叠手机首批备货 100 万台,三个月后发布
NVD“撑不住”了:以后NVD的漏洞该咋运营
1 month 3 weeks ago
CVE又有大变动。
Quantum-Resistant Identity and Access Management for MCP Resources
1 month 3 weeks ago
Secure your MCP hosts with quantum-resistant IAM. Learn about lattice-based signatures, PQuAKE, and 4D context-aware access for AI agents.
The post Quantum-Resistant Identity and Access Management for MCP Resources appeared first on Security Boulevard.
Read the Gopher Security's Quantum Safety Blog
知识库应用的效用评估和优化
1 month 3 weeks ago
让AI助手真正成为业务团队的“金牌搭档”。
LARYBench 发布:定义具身动作表征 ImageNet,首次度量从人类视频学习的泛化表征
1 month 3 weeks ago
LARYBench (Latent Action Representation Yielding Benchmark),一个指引从大规模的视觉数据学习到通用的隐式动作表征的系统化评测基准。实验结果表明:在动作泛化和控制精度上,通用视觉模型的表现均显著优于专门为具身智能设计的动作专家模型,具身动作表征可以从大规模人类视频数据中涌现。
霍尔木兹被封,一场改写全球产业链格局的"压力测试"
1 month 3 weeks ago
封锁之下,谁在裸泳,谁穿了救生衣。
Trident Locker
1 month 3 weeks ago
You must login to view this content
cohenido
一文读懂 .NET 中的全局 Global.asax 文件
1 month 3 weeks ago
通过反射深入理解 .NET 运行时动态操作类型
1 month 3 weeks ago
INC
1 month 3 weeks ago
You must login to view this content
cohenido
INC
1 month 3 weeks ago
You must login to view this content
cohenido
Привет от «Истинных мусульман». Индийские новости внезапно заговорили голосом афганских партизан
1 month 3 weeks ago
Объясняем, почему атака на OneIndia — это не просто взлом.
CVE-2026-7160 | Tenda HG3 2.0 /boaform/formTracert datasize command injection
1 month 3 weeks ago
A vulnerability classified as critical was found in Tenda HG3 2.0. This vulnerability affects the function formTracert of the file /boaform/formTracert. Executing a manipulation of the argument datasize can lead to command injection.
This vulnerability appears as CVE-2026-7160. The attack may be performed from remote. In addition, an exploit is available.
vuldb.com
CVE-2026-7159 | douinc mkdocs-mcp-plugin up to 0.4.1 server.py read_document/list_documents docs_dir/file_path path traversal
1 month 3 weeks ago
A vulnerability classified as critical has been found in douinc mkdocs-mcp-plugin up to 0.4.1. This affects the function read_document/list_documents of the file server.py. Performing a manipulation of the argument docs_dir/file_path results in path traversal.
This vulnerability is reported as CVE-2026-7159. The attack is possible to be carried out remotely. Moreover, an exploit is present.
The vendor confirms, that the "fix will be published within a few days."
vuldb.com
Submit #802079: Tenda HG3 N300 Wi-Fi xPON ONT HARD_VERSION=V2.0 , Version: 300003070 Remote code execution [Accepted]
1 month 3 weeks ago
Submit #802079 / VDB-359759
2er00ne
CVE-2026-7158 | dmitryglhf mcp-url-downloader up to 4b8cf2de55f6e8864a77d108e8a94a5b8e4394c6 server.py _validate_url_safe url server-side request forgery
1 month 3 weeks ago
A vulnerability described as critical has been identified in dmitryglhf mcp-url-downloader up to 4b8cf2de55f6e8864a77d108e8a94a5b8e4394c6. Affected by this issue is the function _validate_url_safe of the file src/mcp_url_downloader/server.py. Such manipulation of the argument url leads to server-side request forgery.
This vulnerability is documented as CVE-2026-7158. The attack can be executed remotely. Additionally, an exploit exists.
This product implements a rolling release for ongoing delivery, which means version information for affected or updated releases is unavailable.
The project was informed of the problem early through an issue report but has not responded yet.
vuldb.com
Submit #802063: douinc mkdocs-mcp-plugin 0.4.1 Path Traversal [Accepted]
1 month 3 weeks ago
Submit #802063 / VDB-359758
SmallW
CVE-2026-7157 | disler aider-mcp-server up to b2516fa466d0d851932da92ee6d0e66946db9efc aider_ai_code server.py relative_editable_files command injection
1 month 3 weeks ago
A vulnerability marked as critical has been reported in disler aider-mcp-server up to b2516fa466d0d851932da92ee6d0e66946db9efc. Affected by this vulnerability is an unknown functionality of the file src/aider_mcp_server/server.py of the component aider_ai_code. This manipulation of the argument relative_editable_files causes command injection.
This vulnerability is registered as CVE-2026-7157. Remote exploitation of the attack is possible. Furthermore, an exploit is available.
This product follows a rolling release approach for continuous delivery, so version details for affected or updated releases are not provided.
The project was informed of the problem early through an issue report but has not responded yet.
vuldb.com