吉祥寺北口システムが気になった記事をクリップしています。タイトルから元記事にリンクしています。タグは記事タイトルを形態素分析しています。たまにコメントをつけています。
Advisory
Apache Camel Security Advisory – CVE-2026-80351 – Apache Camel
2026
(631)
80351
(2)
Advisory
(350)
apache
(582)
Camel
(7)
CVE-
(1690)
Security
(6024)
Apache Camel Security Advisory – CVE-2026-80351 – Apache Camel
2026
(631)
80351
(2)
Advisory
(350)
apache
(582)
Camel
(7)
CVE-
(1690)
Security
(6024)
Jenkins Security Advisory 2026-09-02
2026
(631)
Advisory
(350)
Jenkins
(25)
Security
(6024)
Expression Sandbox Escape via Shared Builtin Tampering and Code-Printer Injection Leads to Code Execution · Advisory · n8n-io/n8n · GitHub
Advisory
(350)
and
(3642)
Builtin
(1)
Code
(524)
escape
(12)
execution
(142)
Expression
(11)
GitHub
(1140)
Injection
(82)
IO
(125)
Leads
(25)
PRINTER
(14)
Sandbox
(43)
shared
(25)
tampering
(3)
to
(3558)
via
(99)
Security Advisory
Advisory
(350)
Security
(6024)
URGENT Security Advisory: PaperCut NG/MF Security Bulletin (27 Aug 2026) | PaperCut
2026
(631)
27
(372)
Advisory
(350)
Aug
(12)
Bulletin
(275)
mF
(33)
NG
(32)
PaperCut
(2)
Security
(6024)
Urgent
(8)
Oracle Critical Security Patch Update Advisory – August 2026
2026
(631)
Advisory
(350)
August
(35)
Critical
(260)
Oracle
(964)
Patch
(124)
Security
(6024)
Update
(1208)
Unauthenticated full-read SSRF in MLflow webhook delivery: _validate_webhook_url bypassed via unvalidated HTTP redirects (and DNS rebinding) · Advisory · mlflow/mlflow · GitHub
Advisory
(350)
and
(3642)
bypassed
(4)
Delivery
(57)
DNS
(418)
Full
(66)
GitHub
(1140)
HTTP
(362)
in
(2741)
MLflow
(7)
read
(44)
rebinding
(2)
Redirects
(9)
SSRF
(11)
Unauthenticated
(26)
unvalidated
(2)
URL
(200)
validate
(12)
via
(99)
Webhook
(12)
Unauthenticated full-read SSRF in MLflow webhook delivery: _validate_webhook_url bypassed via unvalidated HTTP redirects (and DNS rebinding) · Advisory · mlflow/mlflow
Advisory
(350)
and
(3642)
bypassed
(4)
Delivery
(57)
DNS
(418)
Full
(66)
HTTP
(362)
in
(2741)
MLflow
(7)
read
(44)
rebinding
(2)
Redirects
(9)
SSRF
(11)
Unauthenticated
(26)
unvalidated
(2)
URL
(200)
validate
(12)
via
(99)
Webhook
(12)
The append-only-vec crate 0.1.9 for Rust can trigger… · CVE-2026-77650 · GitHub Advisory Database
2026
(631)
77650
(1)
Advisory
(350)
APPEND
(5)
can
(259)
crate
(3)
CVE-
(1690)
Database
(315)
for
(5821)
GitHub
(1140)
only
(44)
Rust
(141)
the
(4731)
trigger
(12)
VEC
(7)
The arrayref crate 0.3.10 for Rust can trigger execution… · CVE-2026-77651 · GitHub Advisory Database
2026
(631)
77651
(1)
Advisory
(350)
arrayref
(9)
can
(259)
crate
(3)
CVE-
(1690)
Database
(315)
execution
(142)
for
(5821)
GitHub
(1140)
Rust
(141)
the
(4731)
trigger
(12)
The internment crate 0.8.7 for Rust can trigger execution… · CVE-2026-77649 · GitHub Advisory Database
2026
(631)
77649
(1)
Advisory
(350)
can
(259)
crate
(3)
CVE-
(1690)
Database
(315)
execution
(142)
for
(5821)
GitHub
(1140)
Internment
(5)
Rust
(141)
the
(4731)
trigger
(12)
Malware: `arrayref` 0.3.10 executes a remote payload at build time via typosquatted `proc-macro1` · Issue #3161 · rustsec/advisory-db
3161
(1)
Advisory
(350)
arrayref
(9)
at
(526)
Build
(272)
DB
(188)
executes
(1)
Issue
(89)
Macro
(6)
malware
(132)
Payload
(9)
proc
(5)
Remote
(227)
RUSTSEC
(5)
Time
(208)
typosquatted
(1)
via
(99)
RUSTSEC-2026-0266: internment: `internment` 0.8.7 was removed from crates.io due to a malicious dependency › RustSec Advisory Database
0266
(1)
2026
(631)
Advisory
(350)
Crates
(9)
Database
(315)
Dependency
(6)
due
(54)
from
(652)
Internment
(5)
IO
(125)
Malicious
(48)
removed
(13)
RUSTSEC
(5)
to
(3558)
was
(34)
RUSTSEC-2026-0265: proc-macro1: `proc-macro1` was removed from crates.io due to malicious code › RustSec Advisory Database
0265
(4)
2026
(631)
Advisory
(350)
Code
(524)
Crates
(9)
Database
(315)
due
(54)
from
(652)
IO
(125)
Macro
(6)
Malicious
(48)
proc
(5)
removed
(13)
RUSTSEC
(5)
to
(3558)
was
(34)
RUSTSEC-2026-0262: append-only-vec: `append-only-vec` 0.1.9 was removed from crates.io due to a malicious dependency › RustSec Advisory Database
0262
(1)
2026
(631)
Advisory
(350)
APPEND
(5)
Crates
(9)
Database
(315)
Dependency
(6)
due
(54)
from
(652)
IO
(125)
Malicious
(48)
only
(44)
removed
(13)
RUSTSEC
(5)
to
(3558)
VEC
(7)
was
(34)
RUSTSEC-2026-0260: arrayref: `arrayref` 0.3.10 was removed from crates.io due to a malicious dependency › RustSec Advisory Database
0260
(1)
2026
(631)
Advisory
(350)
arrayref
(9)
Crates
(9)
Database
(315)
Dependency
(6)
due
(54)
from
(652)
IO
(125)
Malicious
(48)
removed
(13)
RUSTSEC
(5)
to
(3558)
was
(34)
Unauthenticated Arbitrary File Read can lead to RCE · Advisory · go-gitea/gitea
Advisory
(350)
Arbitrary
(37)
can
(259)
File
(153)
Gitea
(2)
GO
(340)
lead
(46)
RCE
(46)
read
(44)
to
(3558)
Unauthenticated
(26)
@better-auth/scim: account takeover and stale access via SCIM provider-id collision · Advisory · better-auth/better-auth
Access
(338)
Account
(92)
Advisory
(350)
and
(3642)
Auth
(31)
Better
(94)
Collision
(10)
ID
(602)
provider
(23)
SCIM
(8)
stale
(3)
Takeover
(21)
via
(99)
Zyxel security advisory for command injection and improper authentication vulnerabilities in certain APs, FWA7, and Security Routers | Zyxel Networks
Advisory
(350)
and
(3642)
APS
(3)
authentication
(82)
Certain
(12)
Command
(88)
for
(5821)
FWA
(2)
improper
(12)
in
(2741)
Injection
(82)
Networks
(233)
Routers
(18)
Security
(6024)
Vulnerabilities
(265)
ZyXEL
(11)
Jenkins Security Advisory 2026-08-05
2026
(631)
Advisory
(350)
Jenkins
(25)
Security
(6024)
Gemini CLI: Remote Code Execution via workspace trust and tool allowlisting bypasses · GHSA-wpqr-6v78-jr5g · GitHub Advisory Database
78
(26)
Advisory
(350)
allowlisting
(1)
and
(3642)
bypasses
(3)
CLI
(75)
Code
(524)
Database
(315)
execution
(142)
Gemini
(81)
GHSA
(2)
GitHub
(1140)
JR
(493)
Remote
(227)
tool
(132)
Trust
(97)
via
(99)
Workspace
(124)
wpqr
(1)
SQLite 3.41 has a use-after-free vulnerability exists in… · CVE-2026-51302 · GitHub Advisory Database
2026
(631)
41
(36)
51302
(4)
Advisory
(350)
after
(92)
CVE-
(1690)
Database
(315)
exists
(2)
Free
(300)
GitHub
(1140)
Has
(112)
in
(2741)
SQLite
(36)
Use
(201)
Vulnerability
(618)
Remote code execution vulnerability via malicious file upload by an Author level user or higher · Advisory · WordPress/wordpress-develop
Advisory
(350)
An
(446)
author
(7)
by
(1186)
Code
(524)
develop
(30)
execution
(142)
File
(153)
Higher
(13)
Level
(46)
Malicious
(48)
or
(108)
Remote
(227)
Upload
(16)
user
(146)
via
(99)
Vulnerability
(618)
WordPress
(572)
Zbtlink security advisory (AV26-779) – Canadian Centre for Cyber Security
26
(355)
779
(2)
Advisory
(350)
AV
(649)
Canadian
(6)
Centre
(26)
Cyber
(154)
for
(5821)
Security
(6024)
Zbtlink
(4)
The Loco Translate plugin for WordPress is vulnerable to… · CVE-2026-15005 · GitHub Advisory Database
15005
(1)
2026
(631)
Advisory
(350)
CVE-
(1690)
Database
(315)
for
(5821)
GitHub
(1140)
is
(1122)
Loco
(2)
plugin
(66)
the
(4731)
to
(3558)
translate
(35)
vulnerable
(45)
WordPress
(572)
Security Advisory 0144 – Arista
0144
(1)
Advisory
(350)
Arista
(8)
Security
(6024)
Security Advisory
Advisory
(350)
Security
(6024)
Multipart form-data parser silently strips embedded line breaks from form-field values, enabling request-body inspection bypass · Advisory · owasp-modsecurity/ModSecurity · GitHub
Advisory
(350)
BODY
(17)
Breaks
(8)
Bypass
(83)
data
(951)
Embedded
(24)
Enabling
(23)
Field
(43)
Form
(50)
from
(652)
GitHub
(1140)
Inspection
(9)
LINE
(2599)
modsecurity
(1)
Multipart
(1)
OWASP
(21)
parser
(9)
request
(51)
silently
(4)
strips
(1)
VALUES
(11)
Apache Camel Security Advisory – CVE-2026-40047 – Apache Camel
2026
(631)
40047
(1)
Advisory
(350)
apache
(582)
Camel
(7)
CVE-
(1690)
Security
(6024)
Facilitated SQL injection vulnerability in the `author__not_in` parameter of `WP_Query` · Advisory · WordPress/wordpress-develop · GitHub
Advisory
(350)
author
(7)
develop
(30)
Facilitated
(1)
GitHub
(1140)
in
(2741)
Injection
(82)
Not
(124)
of
(3593)
parameter
(9)
Query
(25)
SQL
(351)
the
(4731)
Vulnerability
(618)
WordPress
(572)
WP
(69)
REST API batch-route confusion and SQL injection issue leading to Remote Code Execution · Advisory · WordPress/wordpress-develop · GitHub
Advisory
(350)
and
(3642)
API
(1197)
Batch
(23)
Code
(524)
confusion
(7)
develop
(30)
execution
(142)
GitHub
(1140)
Injection
(82)
Issue
(89)
leading
(44)
Remote
(227)
REST
(35)
Route
(55)
SQL
(351)
to
(3558)
WordPress
(572)
JVNVU#94281476: CISA ICS Advisory / ICS Medical Advisory(2026年07月09日)
2026
(631)
94281476
(1)
Advisory
(350)
CISA
(108)
ICS
(18)
JVNVU
(2759)
Medical
(58)
Security Advisory Bulletin 066 | Ubiquiti Community
066
(4)
Advisory
(350)
Bulletin
(275)
Community
(393)
Security
(6024)
Ubiquiti
(5)
JVNVU#97594085: CISA ICS Advisory / ICS Medical Advisory(2026年07月02日)
2026
(631)
97594085
(1)
Advisory
(350)
CISA
(108)
ICS
(18)
JVNVU
(2759)
Medical
(58)
JVNVU#99876312: CISA ICS Advisory / ICS Medical Advisory(2026年06月30日)
2026
(631)
30
(1003)
99876312
(1)
Advisory
(350)
CISA
(108)
ICS
(18)
JVNVU
(2759)
Medical
(58)
Jenkins Security Advisory 2026-06-24
2026
(631)
24
(526)
Advisory
(350)
Jenkins
(25)
Security
(6024)
Zyxel security advisory for stack-based buffer overflow vulnerability in GS1900 series switches | Zyxel Networks
1900
(8)
Advisory
(350)
Based
(88)
Buffer
(41)
for
(5821)
GS
(24)
in
(2741)
Networks
(233)
overflow
(124)
Security
(6024)
Series
(112)
Stack
(126)
Switches
(7)
Vulnerability
(618)
ZyXEL
(11)
Keras versions prior to 3.14.0 are vulnerable to a path… · CVE-2026-11816 · GitHub Advisory Database · GitHub
11816
(1)
14
(520)
2026
(631)
Advisory
(350)
Are
(232)
CVE-
(1690)
Database
(315)
GitHub
(1140)
Keras
(11)
Path
(43)
prior
(5)
to
(3558)
versions
(28)
vulnerable
(45)
Jenkins Security Advisory 2026-06-10
2026
(631)
Advisory
(350)
Jenkins
(25)
Security
(6024)
Oracle Security Alert Advisory – CVE-2026-35273
2026
(631)
35273
(1)
Advisory
(350)
Alert
(70)
CVE-
(1690)
Oracle
(964)
Security
(6024)
JVNVU#91880087: CISA ICS Advisory / ICS Medical Advisory(2026年06月09日)
2026
(631)
91880087
(1)
Advisory
(350)
CISA
(108)
ICS
(18)
JVNVU
(2759)
Medical
(58)
May 2026 Security Advisory Ivanti Endpoint Manager Mobile (EPMM) (Multiple CVEs)
2026
(631)
Advisory
(350)
CVEs
(10)
Endpoint
(100)
EPMM
(9)
Ivanti
(44)
Manager
(387)
May
(126)
Mobile
(583)
multiple
(142)
Security
(6024)
PDF /GoToR action argv injection enables single-click RCE via –gtk-module dlopen · Advisory · mate-desktop/atril · GitHub
Action
(96)
Advisory
(350)
argv
(1)
atril
(1)
Click
(41)
Desktop
(505)
dlopen
(1)
enables
(19)
GitHub
(1140)
GoToR
(1)
GTK
(2)
Injection
(82)
Mate
(13)
Module
(32)
PDF
(342)
RCE
(46)
Single
(43)
via
(99)
Unauthenticated Use of Hard-Coded Credentials Vulnerability in FreePBX UCP Interface · Advisory · FreePBX/security-reporting · GitHub
Advisory
(350)
coded
(5)
credentials
(25)
FreePBX
(1)
GitHub
(1140)
Hard
(20)
in
(2741)
Interface
(45)
of
(3593)
Reporting
(18)
Security
(6024)
UCP
(3)
Unauthenticated
(26)
Use
(201)
Vulnerability
(618)
XML Node Prototype Pollution Patch Bypass · Advisory · n8n-io/n8n · GitHub
Advisory
(350)
Bypass
(83)
GitHub
(1140)
IO
(125)
Node
(143)
Patch
(124)
Pollution
(6)
prototype
(16)
XML
(87)
PowerDNS Security Advisory 2026-06: Multiple Issues – PowerDNS Authoritative Server documentation
2026
(631)
Advisory
(350)
Authoritative
(19)
Documentation
(70)
issues
(118)
multiple
(142)
PowerDNS
(41)
Security
(6024)
Server
(815)
Security Advisory
Advisory
(350)
Security
(6024)
May 2026 Security Advisory Ivanti Endpoint Manager Mobile (EPMM) (Multiple CVEs)
2026
(631)
Advisory
(350)
CVEs
(10)
Endpoint
(100)
EPMM
(9)
Ivanti
(44)
Manager
(387)
May
(126)
Mobile
(583)
multiple
(142)
Security
(6024)
Oracle Critical Patch Update Advisory – April 2026
2026
(631)
Advisory
(350)
April
(71)
Critical
(260)
Oracle
(964)
Patch
(124)
Update
(1208)
Race condition vulnerability leads to arbitrary package installation as root · Advisory · PackageKit/PackageKit · GitHub
Advisory
(350)
Arbitrary
(37)
As
(334)
condition
(12)
GitHub
(1140)
installation
(8)
Leads
(25)
package
(50)
PackageKit
(2)
race
(16)
root
(58)
to
(3558)
Vulnerability
(618)
Race condition vulnerability leads to arbitrary package installation as root · Advisory · PackageKit/PackageKit · GitHub
Advisory
(350)
Arbitrary
(37)
As
(334)
condition
(12)
GitHub
(1140)
installation
(8)
Leads
(25)
package
(50)
PackageKit
(2)
race
(16)
root
(58)
to
(3558)
Vulnerability
(618)
Argument injection via newline in PHP INI values forwarded to child processes · Advisory · sebastianbergmann/phpunit · GitHub
Advisory
(350)
argument
(2)
Child
(11)
forwarded
(1)
GitHub
(1140)
in
(2741)
INI
(1)
Injection
(82)
newline
(1)
PHP
(184)
PHPUnit
(2)
processes
(7)
sebastianbergmann
(1)
to
(3558)
VALUES
(11)
via
(99)
Oracle Critical Patch Update Advisory – April 2026
2026
(631)
Advisory
(350)
April
(71)
Critical
(260)
Oracle
(964)
Patch
(124)
Update
(1208)
Unauthenticated remote code execution due to SSH command-line argument injection · Advisory · cockpit-project/cockpit · GitHub
Advisory
(350)
argument
(2)
Cockpit
(6)
Code
(524)
Command
(88)
due
(54)
execution
(142)
GitHub
(1140)
Injection
(82)
LINE
(2599)
Project
(486)
Remote
(227)
SSH
(66)
to
(3558)
Unauthenticated
(26)
JVNVU#96083153: OpenSSLにおける複数の脆弱性(OpenSSL Security Advisory [7th April 2026])
2026
(631)
96083153
(2)
Advisory
(350)
April
(71)
JVNVU
(2759)
openssl
(233)
Security
(6024)
th
(154)
脆弱
(3497)
複数
(2810)
JVNVU#96083153: OpenSSLにおける複数の脆弱性(OpenSSL Security Advisory [7th April 2026])
2026
(631)
96083153
(2)
Advisory
(350)
April
(71)
JVNVU
(2759)
openssl
(233)
Security
(6024)
th
(154)
脆弱
(3497)
複数
(2810)
Oracle Security Alert Advisory – CVE-2026-21992
2026
(631)
21992
(2)
Advisory
(350)
Alert
(70)
CVE-
(1690)
Oracle
(964)
Security
(6024)
RCE via SQL Mode of Merge Node · Advisory · n8n-io/n8n · GitHub
Advisory
(350)
GitHub
(1140)
IO
(125)
merge
(7)
Mode
(98)
Node
(143)
of
(3593)
RCE
(46)
SQL
(351)
via
(99)
Oracle Security Alert Advisory – CVE-2026-21992
2026
(631)
21992
(2)
Advisory
(350)
Alert
(70)
CVE-
(1690)
Oracle
(964)
Security
(6024)
Jenkins Security Advisory 2026-03-18
18
(446)
2026
(631)
Advisory
(350)
Jenkins
(25)
Security
(6024)
JVNVU#92815756: OpenSSLにおけるTLS 1.3鍵交換グループの選択に関する問題(OpenSSL Security Advisory [13th March 2026])
13
(492)
2026
(631)
92815756
(2)
Advisory
(350)
JVNVU
(2759)
March
(46)
openssl
(233)
Security
(6024)
th
(154)
TLS
(214)
グループ
(3028)
交換
(373)
問題
(1745)
選択
(215)
JVNVU#92815756: OpenSSLにおけるTLS 1.3鍵交換グループの選択に関する問題(OpenSSL Security Advisory [13th March 2026])
13
(492)
2026
(631)
92815756
(2)
Advisory
(350)
JVNVU
(2759)
March
(46)
openssl
(233)
Security
(6024)
th
(154)
TLS
(214)
グループ
(3028)
交換
(373)
問題
(1745)
選択
(215)
Jenkins Security Advisory 2026-02-18
18
(446)
2026
(631)
Advisory
(350)
Jenkins
(25)
Security
(6024)
Zyxel security advisory for null pointer dereference and command injection vulnerabilities in certain 4G LTE/5G NR CPE, DSL/Ethernet CPE, Fiber ONTs, Security Routers, and Wireless Extenders | Zyxel Networks
Advisory
(350)
and
(3642)
Certain
(12)
Command
(88)
CPE
(4)
dereference
(3)
DSL-
(9)
Ethernet
(46)
Extenders
(1)
Fiber
(7)
for
(5821)
in
(2741)
Injection
(82)
LTE
(242)
Networks
(233)
NR
(11)
Null
(32)
ONTs
(1)
Pointer
(7)
Routers
(18)
Security
(6024)
Vulnerabilities
(265)
Wireless
(59)
ZyXEL
(11)
JVNVU#91919266: OpenSSLにおける複数の脆弱性(OpenSSL Security Advisory [27th January 2026])
2026
(631)
27
(372)
91919266
(3)
Advisory
(350)
January
(81)
JVNVU
(2759)
openssl
(233)
Security
(6024)
th
(154)
脆弱
(3497)
複数
(2810)
Local Privilege Escalation via TOCTOU Race Condition in Fido Script Handling · Advisory · pbatard/rufus · GitHub
Advisory
(350)
condition
(12)
escalation
(36)
FIDO
(74)
GitHub
(1140)
Handling
(20)
in
(2741)
local
(95)
pbatard
(1)
privilege
(51)
race
(16)
Rufus
(5)
Script
(14)
TOCTOU
(6)
via
(99)
JVNVU#91919266: OpenSSLにおける複数の脆弱性(OpenSSL Security Advisory [27th January 2026])
2026
(631)
27
(372)
91919266
(3)
Advisory
(350)
January
(81)
JVNVU
(2759)
openssl
(233)
Security
(6024)
th
(154)
脆弱
(3497)
複数
(2810)
JVNVU#91919266: OpenSSLにおける複数の脆弱性(OpenSSL Security Advisory [27th January 2026])
2026
(631)
27
(372)
91919266
(3)
Advisory
(350)
January
(81)
JVNVU
(2759)
openssl
(233)
Security
(6024)
th
(154)
脆弱
(3497)
複数
(2810)
Redis Horizontal Scaling Insecure Deserialization · Advisory · laravel/reverb · GitHub
Advisory
(350)
deserialization
(6)
GitHub
(1140)
Horizontal
(1)
insecure
(10)
Laravel
(5)
Redis
(73)
reverb
(1)
Scaling
(54)
Oracle Critical Patch Update Advisory – January 2026
2026
(631)
Advisory
(350)
Critical
(260)
January
(81)
Oracle
(964)
Patch
(124)
Update
(1208)
oss-sec: GNU InetUtils Security Advisory: remote authentication by-pass in telnetd
Advisory
(350)
authentication
(82)
by
(1186)
GNU
(56)
in
(2741)
InetUtils
(1)
OSS
(274)
Pass
(40)
Remote
(227)
SEC
(32)
Security
(6024)
telnetd
(1)
pnpm v10 Bypass “Dependency lifecycle scripts execution disabled by default” · CVE-2025-69264 · GitHub Advisory Database · GitHub
2025
(1085)
69264
(1)
Advisory
(350)
by
(1186)
Bypass
(83)
CVE-
(1690)
Database
(315)
default
(54)
Dependency
(6)
disabled
(8)
execution
(142)
GitHub
(1140)
Lifecycle
(21)
pnpm
(1)
scripts
(11)
n8n Remote Code Execution via Expression Injection · Advisory · n8n-io/n8n · GitHub
Advisory
(350)
Code
(524)
execution
(142)
Expression
(11)
GitHub
(1140)
Injection
(82)
IO
(125)
Remote
(227)
via
(99)
Net-SNMP snmptrapd vulnerability · Advisory · net-snmp/net-snmp · GitHub
Advisory
(350)
GitHub
(1140)
net
(443)
SNMP
(13)
snmptrapd
(1)
Vulnerability
(618)
Security Advisory
Advisory
(350)
Security
(6024)
Hono Improper Authorization vulnerability | GitLab Advisory Database
Advisory
(350)
Authorization
(16)
Database
(315)
GitLab
(134)
Hono
(2)
improper
(12)
Vulnerability
(618)
Security Advisory: Critical RCE Vulnerabilities in React Server Components & Next.js | Snyk
Advisory
(350)
Components
(29)
Critical
(260)
in
(2741)
js
(275)
Next
(361)
RCE
(46)
React
(83)
Security
(6024)
Server
(815)
snyk
(18)
Vulnerabilities
(265)
Security Advisory: CVE-2025-66478 | Next.js
2025
(1085)
66478
(3)
Advisory
(350)
CVE-
(1690)
js
(275)
Next
(361)
Security
(6024)
Security Advisory
Advisory
(350)
Security
(6024)
Security Advisory: CVE-2025-49844 | Redis
2025
(1085)
49844
(1)
Advisory
(350)
CVE-
(1690)
Redis
(73)
Security
(6024)
SQUID-2025:2 Information Disclosure in Error handling · Advisory · squid-cache/squid · GitHub
2025
(1085)
Advisory
(350)
cache
(36)
disclosure
(53)
Error
(26)
GitHub
(1140)
Handling
(20)
in
(2741)
INFORMATION
(245)
squid
(18)
JVNVU#93161789: OpenSSLにおける複数の脆弱性(OpenSSL Security Advisory [30th September 2025])
2025
(1085)
30
(1003)
93161789
(1)
Advisory
(350)
JVNVU
(2759)
openssl
(233)
Security
(6024)
September
(46)
th
(154)
脆弱
(3497)
複数
(2810)
ChatGPT Agent – XSS on file://home/oai/redirect.html · Advisory · google/security-research · GitHub
Advisory
(350)
Agent
(258)
ChatGPT
(264)
File
(153)
GitHub
(1140)
Google
(6011)
Home
(660)
HTML
(234)
oai
(1)
on
(2035)
Redirect
(8)
RESEARCH
(341)
Security
(6024)
XSS
(63)
Node-SAML SAML Signature Verification Vulnerability · Advisory · node-saml/node-saml · GitHub
Advisory
(350)
GitHub
(1140)
Node
(143)
SAML
(29)
signature
(19)
Verification
(31)
Vulnerability
(618)
Security Advisory
Advisory
(350)
Security
(6024)
Oracle Critical Patch Update Advisory – July 2025
2025
(1085)
Advisory
(350)
Critical
(260)
July
(54)
Oracle
(964)
Patch
(124)
Update
(1208)
JVNVU#91298012: OpenSSL x509アプリケーションにおける、拒否設定の代わりに信頼設定を付加してしまう問題(OpenSSL Security Advisory [22nd May 2025])
2025
(1085)
22
(400)
509
(11)
91298012
(2)
Advisory
(350)
JVNVU
(2759)
May
(126)
nd
(27)
openssl
(233)
Security
(6024)
アプリケーション
(1067)
付加
(41)
代わり
(25)
信頼
(242)
問題
(1745)
拒否
(229)
設定
(945)
JVNVU#91298012: OpenSSL x509アプリケーションにおける、拒否設定の代わりに信頼設定を付加してしまう問題(OpenSSL Security Advisory [22nd May 2025])
2025
(1085)
22
(400)
509
(11)
91298012
(2)
Advisory
(350)
JVNVU
(2759)
May
(126)
nd
(27)
openssl
(233)
Security
(6024)
アプリケーション
(1067)
付加
(41)
代わり
(25)
信頼
(242)
問題
(1745)
拒否
(229)
設定
(945)
JVNVU#96140980: OpenSSLのPOLY1305 MAC実装におけるWindows上のXMMレジスタが破損する問題(Security Advisory [8th September 2023])
1305
(7)
2023
(1936)
96140980
(4)
Advisory
(350)
JVNVU
(2759)
Mac
(548)
openssl
(233)
poly
(11)
Security
(6024)
September
(46)
th
(154)
Windows
(3536)
XMM
(4)
レジスタ
(7)
問題
(1745)
実装
(781)
破損
(98)
Security Advisory
Advisory
(350)
Security
(6024)
Security Advisory
Advisory
(350)
Security
(6024)
Oracle Critical Patch Update Advisory – April 2025
2025
(1085)
Advisory
(350)
April
(71)
Critical
(260)
Oracle
(964)
Patch
(124)
Update
(1208)
incomplete signature validation for unsigned-trailer uploads · Advisory · minio/minio · GitHub
Advisory
(350)
for
(5821)
GitHub
(1140)
Incomplete
(2)
minio
(1)
signature
(19)
trailer
(3)
unsigned
(4)
uploads
(8)
Validation
(39)
WordPress テーマ・プラグイン 脆弱性情報のダイジェストを無料でお届けする「WordPress Security Advisory」を開始 – プライム・ストラテジー – CMSマネージドサービス
Advisory
(350)
CMS
(260)
Security
(6024)
WordPress
(572)
イン
(838)
ストラテジー
(46)
ダイジェスト
(10)
テーマ
(203)
プライム
(151)
プラグ
(189)
マネージドサービス
(34)
情報
(14155)
無料
(1835)
脆弱
(3497)
開始
(22560)
Jenkins Security Advisory 2025-03-05
2025
(1085)
Advisory
(350)
Jenkins
(25)
Security
(6024)
JVNVU#91390536: OpenSSLにおける、RFC7250ハンドシェイクによる認証の失敗を検知できない問題(OpenSSL Security Advisory [11th February 2025])
11
(1672)
2025
(1085)
7250
(1)
91390536
(1)
Advisory
(350)
February
(32)
JVNVU
(2759)
openssl
(233)
RFC
(50)
Security
(6024)
th
(154)
ハンドシェイク
(4)
問題
(1745)
失敗
(187)
検知
(688)
認証
(1485)
Security Advisory
Advisory
(350)
Security
(6024)
JVNVU#95772889: OpenSSLにおける秘密鍵のタイミング攻撃に対する問題(OpenSSL Security Advisory [20th January 2025])
20
(989)
2025
(1085)
95772889
(2)
Advisory
(350)
January
(81)
JVNVU
(2759)
openssl
(233)
Security
(6024)
th
(154)
タイミング
(35)
問題
(1745)
攻撃
(2871)
秘密
(201)
JVNVU#95772889: OpenSSLにおける秘密鍵のタイミング攻撃に対する問題(OpenSSL Security Advisory [20th January 2025])
20
(989)
2025
(1085)
95772889
(2)
Advisory
(350)
January
(81)
JVNVU
(2759)
openssl
(233)
Security
(6024)
th
(154)
タイミング
(35)
問題
(1745)
攻撃
(2871)
秘密
(201)