Aggregator
CVE-2023-37133 | EyouCMS 1.6.3 Column Management cross site scripting (Issue 46 / EUVD-2023-41053)
CVE-2023-37134 | EyouCMS 1.6.3 Information cross site scripting (Issue 47 / EUVD-2023-41054)
CVE-2023-37131 | YznCMS 1.1.0 POST Request update.html cross-site request forgery (EUVD-2023-41051)
美国国土安全部网站遭俄罗斯服务器 DDoS 攻击而瘫痪
研究人员揭示 Reprompt 攻击:允许从微软 Copilot 单次点击窃取数据
严重 WordPress Modular DS 插件漏洞遭活跃利用以获取管理员权限
AWS CodeBuild 配置错误暴露 GitHub 仓库,引发潜在供应链攻击风险
CVE-2025-71111 | Linux Kernel up to 6.1.159/6.6.119/6.12.63/6.18.2 hwmon race condition (WID-SEC-2026-0119)
CVE-2025-71109 | Linux Kernel up to 6.12.63/6.18.2 MIPS UASM_i_LA_mostly memory corruption (WID-SEC-2026-0119)
CVE-2025-71110 | Linux Kernel up to 6.18.2/6.19-rc1 defer_free use after free (WID-SEC-2026-0119)
CVE-2022-50435 | Linux Kernel up to 6.0.2 ext4 fs/ext4/inode.c allocation of resources (Nessus ID 284771 / WID-SEC-2025-2187)
每周高级威胁情报解读(2026.01.09~01.15)
Microsoft’s January Security Update of High-Risk Vulnerability Notice for Multiple Products
Overview On January 14, NSFOCUS CERT detected that Microsoft released the January Security Update patch, which fixed 112 security issues involving widely used products such as Windows, Microsoft Office, Microsoft SQL Server, Azure, etc., including high-risk vulnerability types such as privilege escalation and remote code execution. Among the vulnerabilities fixed by Microsoft’s monthly update this […]
The post Microsoft’s January Security Update of High-Risk Vulnerability Notice for Multiple Products appeared first on NSFOCUS, Inc., a global network and cyber security leader, protects enterprises and carriers from advanced cyber attacks..
The post Microsoft’s January Security Update of High-Risk Vulnerability Notice for Multiple Products appeared first on Security Boulevard.