docker.io/apachepulsar/pulsar-all:4.0.13 linux/amd64

docker.io/apachepulsar/pulsar-all:4.0.13 - Trivy安全扫描结果 扫描时间: 2026-08-28 03:32
全部漏洞信息
低危漏洞:22 中危漏洞:46 高危漏洞:15 严重漏洞:0

系统OS: alpine 3.24.1 扫描引擎: Trivy 扫描时间: 2026-08-28 03:32

docker.io/apachepulsar/pulsar-all:4.0.13 (alpine 3.24.1) (alpine)
低危漏洞:22 中危漏洞:41 高危漏洞:15 严重漏洞:0
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
libcrypto3 CVE-2026-14456 高危 3.5.7-r0 3.5.8-r0 openssl: OpenSSL: Denial of Service via unbounded memory growth in QUIC server

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-14456

镜像层: sha256:34884abbe92863fce933ed7c39c0e045631af0ed86d5cc0dfbdf9fdca426ce3c

发布日期: 2026-08-13 15:19 修改: 2026-08-13 18:17

libssl3 CVE-2026-14456 高危 3.5.7-r0 3.5.8-r0 openssl: OpenSSL: Denial of Service via unbounded memory growth in QUIC server

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-14456

镜像层: sha256:34884abbe92863fce933ed7c39c0e045631af0ed86d5cc0dfbdf9fdca426ce3c

发布日期: 2026-08-13 15:19 修改: 2026-08-13 18:17

openssl CVE-2026-14456 高危 3.5.7-r0 3.5.8-r0 openssl: OpenSSL: Denial of Service via unbounded memory growth in QUIC server

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-14456

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-08-13 15:19 修改: 2026-08-13 18:17

pyc CVE-2026-11940 高危 3.14.5-r0 3.14.7-r0 python: cpython: CPython: tarfile extraction filter bypass allows escaping the destination directory

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-11940

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-06-23 17:16 修改: 2026-08-13 01:16

pyc CVE-2026-15308 高危 3.14.5-r0 3.14.7-r0 python: Python: CPU Denial of Service in HTML parser via repeated unterminated markup declarations

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-15308

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-07-09 17:16 修改: 2026-08-20 17:02

pyc CVE-2026-7210 高危 3.14.5-r0 3.14.7-r0 python: expat: Python/Expat: Denial of Service via crafted XML document

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-7210

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-05-11 18:16 修改: 2026-08-14 01:19

python3 CVE-2026-11940 高危 3.14.5-r0 3.14.7-r0 python: cpython: CPython: tarfile extraction filter bypass allows escaping the destination directory

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-11940

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-06-23 17:16 修改: 2026-08-13 01:16

python3 CVE-2026-15308 高危 3.14.5-r0 3.14.7-r0 python: Python: CPU Denial of Service in HTML parser via repeated unterminated markup declarations

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-15308

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-07-09 17:16 修改: 2026-08-20 17:02

python3 CVE-2026-7210 高危 3.14.5-r0 3.14.7-r0 python: expat: Python/Expat: Denial of Service via crafted XML document

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-7210

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-05-11 18:16 修改: 2026-08-14 01:19

python3-pyc CVE-2026-11940 高危 3.14.5-r0 3.14.7-r0 python: cpython: CPython: tarfile extraction filter bypass allows escaping the destination directory

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-11940

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-06-23 17:16 修改: 2026-08-13 01:16

python3-pyc CVE-2026-15308 高危 3.14.5-r0 3.14.7-r0 python: Python: CPU Denial of Service in HTML parser via repeated unterminated markup declarations

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-15308

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-07-09 17:16 修改: 2026-08-20 17:02

python3-pyc CVE-2026-7210 高危 3.14.5-r0 3.14.7-r0 python: expat: Python/Expat: Denial of Service via crafted XML document

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-7210

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-05-11 18:16 修改: 2026-08-14 01:19

python3-pycache-pyc0 CVE-2026-11940 高危 3.14.5-r0 3.14.7-r0 python: cpython: CPython: tarfile extraction filter bypass allows escaping the destination directory

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-11940

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-06-23 17:16 修改: 2026-08-13 01:16

python3-pycache-pyc0 CVE-2026-15308 高危 3.14.5-r0 3.14.7-r0 python: Python: CPU Denial of Service in HTML parser via repeated unterminated markup declarations

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-15308

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-07-09 17:16 修改: 2026-08-20 17:02

python3-pycache-pyc0 CVE-2026-7210 高危 3.14.5-r0 3.14.7-r0 python: expat: Python/Expat: Denial of Service via crafted XML document

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-7210

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-05-11 18:16 修改: 2026-08-14 01:19

pyc CVE-2025-15366 中危 3.14.5-r0 3.14.7-r0 cpython: IMAP command injection in user-controlled commands

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-15366

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-01-20 22:15 修改: 2026-08-06 01:16

pyc CVE-2026-0864 中危 3.14.5-r0 3.14.7-r0 python: cpython: Python configparser: Configuration injection via crafted multi-line input

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-0864

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-06-23 18:17 修改: 2026-08-18 17:52

pyc CVE-2026-11972 中危 3.14.5-r0 3.14.7-r0 python: Python tarfile module: Denial of Service via improper EOF handling in streaming mode

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-11972

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-06-23 23:16 修改: 2026-08-13 01:16

pyc CVE-2026-3276 中危 3.14.5-r0 3.14.7-r0 python: Python unicodedata: Denial of Service due to excessive CPU consumption

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-3276

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-06-03 16:16 修改: 2026-08-13 01:16

pyc CVE-2026-4360 中危 3.14.5-r0 3.14.7-r0 python: Python Tarfile: Unexpected file ownership when extracting hardlinks

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-4360

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-06-30 15:16 修改: 2026-08-13 01:16

pyc CVE-2026-7774 中危 3.14.5-r0 3.14.7-r0 python: CPython: Python tarfile: Arbitrary file write via crafted link entries

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-7774

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-06-04 16:16 修改: 2026-08-13 01:16

pyc CVE-2026-8328 中危 3.14.5-r0 3.14.7-r0 The ftpcp() function in Lib/ftplib.py was not updated when CVE-2021-4 ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-8328

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-05-13 21:16 修改: 2026-08-13 01:16

pyc CVE-2026-9669 中危 3.14.5-r0 3.14.7-r0 python: Python: Denial of Service via out-of-bounds write in BZ2 decompression

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9669

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-06-08 23:17 修改: 2026-08-13 01:16

libssl3 CVE-2026-63072 中危 3.5.7-r0 3.5.8-r0 openssl: heap buffer overflow in CMS key unwrapping

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-63072

镜像层: sha256:34884abbe92863fce933ed7c39c0e045631af0ed86d5cc0dfbdf9fdca426ce3c

发布日期: 2026-08-25 13:19 修改: 2026-08-25 15:16

libssl3 CVE-2026-63076 中危 3.5.7-r0 3.5.8-r0 openssl: invalid pointer dereference in CMP server via crafted protectionAlg

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-63076

镜像层: sha256:34884abbe92863fce933ed7c39c0e045631af0ed86d5cc0dfbdf9fdca426ce3c

发布日期: 2026-08-25 13:19 修改: 2026-08-25 15:16

libcrypto3 CVE-2026-63072 中危 3.5.7-r0 3.5.8-r0 openssl: heap buffer overflow in CMS key unwrapping

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-63072

镜像层: sha256:34884abbe92863fce933ed7c39c0e045631af0ed86d5cc0dfbdf9fdca426ce3c

发布日期: 2026-08-25 13:19 修改: 2026-08-25 15:16

python3 CVE-2025-15366 中危 3.14.5-r0 3.14.7-r0 cpython: IMAP command injection in user-controlled commands

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-15366

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-01-20 22:15 修改: 2026-08-06 01:16

python3 CVE-2026-0864 中危 3.14.5-r0 3.14.7-r0 python: cpython: Python configparser: Configuration injection via crafted multi-line input

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-0864

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-06-23 18:17 修改: 2026-08-18 17:52

python3 CVE-2026-11972 中危 3.14.5-r0 3.14.7-r0 python: Python tarfile module: Denial of Service via improper EOF handling in streaming mode

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-11972

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-06-23 23:16 修改: 2026-08-13 01:16

python3 CVE-2026-3276 中危 3.14.5-r0 3.14.7-r0 python: Python unicodedata: Denial of Service due to excessive CPU consumption

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-3276

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-06-03 16:16 修改: 2026-08-13 01:16

python3 CVE-2026-4360 中危 3.14.5-r0 3.14.7-r0 python: Python Tarfile: Unexpected file ownership when extracting hardlinks

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-4360

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-06-30 15:16 修改: 2026-08-13 01:16

python3 CVE-2026-7774 中危 3.14.5-r0 3.14.7-r0 python: CPython: Python tarfile: Arbitrary file write via crafted link entries

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-7774

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-06-04 16:16 修改: 2026-08-13 01:16

python3 CVE-2026-8328 中危 3.14.5-r0 3.14.7-r0 The ftpcp() function in Lib/ftplib.py was not updated when CVE-2021-4 ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-8328

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-05-13 21:16 修改: 2026-08-13 01:16

python3 CVE-2026-9669 中危 3.14.5-r0 3.14.7-r0 python: Python: Denial of Service via out-of-bounds write in BZ2 decompression

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9669

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-06-08 23:17 修改: 2026-08-13 01:16

openssl CVE-2026-18798 中危 3.5.7-r0 3.5.8-r0 openssl: QUIC server may trigger double free when processing INITIAL packet

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-18798

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-08-25 13:17 修改: 2026-08-25 15:16

openssl CVE-2026-63072 中危 3.5.7-r0 3.5.8-r0 openssl: heap buffer overflow in CMS key unwrapping

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-63072

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-08-25 13:19 修改: 2026-08-25 15:16

openssl CVE-2026-63076 中危 3.5.7-r0 3.5.8-r0 openssl: invalid pointer dereference in CMP server via crafted protectionAlg

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-63076

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-08-25 13:19 修改: 2026-08-25 15:16

python3-pyc CVE-2025-15366 中危 3.14.5-r0 3.14.7-r0 cpython: IMAP command injection in user-controlled commands

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-15366

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-01-20 22:15 修改: 2026-08-06 01:16

python3-pyc CVE-2026-0864 中危 3.14.5-r0 3.14.7-r0 python: cpython: Python configparser: Configuration injection via crafted multi-line input

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-0864

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-06-23 18:17 修改: 2026-08-18 17:52

python3-pyc CVE-2026-11972 中危 3.14.5-r0 3.14.7-r0 python: Python tarfile module: Denial of Service via improper EOF handling in streaming mode

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-11972

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-06-23 23:16 修改: 2026-08-13 01:16

python3-pyc CVE-2026-3276 中危 3.14.5-r0 3.14.7-r0 python: Python unicodedata: Denial of Service due to excessive CPU consumption

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-3276

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-06-03 16:16 修改: 2026-08-13 01:16

python3-pyc CVE-2026-4360 中危 3.14.5-r0 3.14.7-r0 python: Python Tarfile: Unexpected file ownership when extracting hardlinks

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-4360

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-06-30 15:16 修改: 2026-08-13 01:16

python3-pyc CVE-2026-7774 中危 3.14.5-r0 3.14.7-r0 python: CPython: Python tarfile: Arbitrary file write via crafted link entries

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-7774

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-06-04 16:16 修改: 2026-08-13 01:16

python3-pyc CVE-2026-8328 中危 3.14.5-r0 3.14.7-r0 The ftpcp() function in Lib/ftplib.py was not updated when CVE-2021-4 ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-8328

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-05-13 21:16 修改: 2026-08-13 01:16

python3-pyc CVE-2026-9669 中危 3.14.5-r0 3.14.7-r0 python: Python: Denial of Service via out-of-bounds write in BZ2 decompression

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9669

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-06-08 23:17 修改: 2026-08-13 01:16

libcrypto3 CVE-2026-63076 中危 3.5.7-r0 3.5.8-r0 openssl: invalid pointer dereference in CMP server via crafted protectionAlg

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-63076

镜像层: sha256:34884abbe92863fce933ed7c39c0e045631af0ed86d5cc0dfbdf9fdca426ce3c

发布日期: 2026-08-25 13:19 修改: 2026-08-25 15:16

libcrypto3 CVE-2026-18798 中危 3.5.7-r0 3.5.8-r0 openssl: QUIC server may trigger double free when processing INITIAL packet

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-18798

镜像层: sha256:34884abbe92863fce933ed7c39c0e045631af0ed86d5cc0dfbdf9fdca426ce3c

发布日期: 2026-08-25 13:17 修改: 2026-08-25 15:16

libssl3 CVE-2026-18798 中危 3.5.7-r0 3.5.8-r0 openssl: QUIC server may trigger double free when processing INITIAL packet

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-18798

镜像层: sha256:34884abbe92863fce933ed7c39c0e045631af0ed86d5cc0dfbdf9fdca426ce3c

发布日期: 2026-08-25 13:17 修改: 2026-08-25 15:16

python3-pycache-pyc0 CVE-2025-15366 中危 3.14.5-r0 3.14.7-r0 cpython: IMAP command injection in user-controlled commands

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-15366

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-01-20 22:15 修改: 2026-08-06 01:16

python3-pycache-pyc0 CVE-2026-0864 中危 3.14.5-r0 3.14.7-r0 python: cpython: Python configparser: Configuration injection via crafted multi-line input

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-0864

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-06-23 18:17 修改: 2026-08-18 17:52

python3-pycache-pyc0 CVE-2026-11972 中危 3.14.5-r0 3.14.7-r0 python: Python tarfile module: Denial of Service via improper EOF handling in streaming mode

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-11972

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-06-23 23:16 修改: 2026-08-13 01:16

python3-pycache-pyc0 CVE-2026-3276 中危 3.14.5-r0 3.14.7-r0 python: Python unicodedata: Denial of Service due to excessive CPU consumption

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-3276

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-06-03 16:16 修改: 2026-08-13 01:16

python3-pycache-pyc0 CVE-2026-4360 中危 3.14.5-r0 3.14.7-r0 python: Python Tarfile: Unexpected file ownership when extracting hardlinks

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-4360

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-06-30 15:16 修改: 2026-08-13 01:16

python3-pycache-pyc0 CVE-2026-7774 中危 3.14.5-r0 3.14.7-r0 python: CPython: Python tarfile: Arbitrary file write via crafted link entries

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-7774

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-06-04 16:16 修改: 2026-08-13 01:16

python3-pycache-pyc0 CVE-2026-8328 中危 3.14.5-r0 3.14.7-r0 The ftpcp() function in Lib/ftplib.py was not updated when CVE-2021-4 ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-8328

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-05-13 21:16 修改: 2026-08-13 01:16

python3-pycache-pyc0 CVE-2026-9669 中危 3.14.5-r0 3.14.7-r0 python: Python: Denial of Service via out-of-bounds write in BZ2 decompression

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9669

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-06-08 23:17 修改: 2026-08-13 01:16

libssl3 CVE-2026-63075 低危 3.5.7-r0 3.5.8-r0 openssl: QUIC ACK-only packet retention can cause memory exhaustion

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-63075

镜像层: sha256:34884abbe92863fce933ed7c39c0e045631af0ed86d5cc0dfbdf9fdca426ce3c

发布日期: 2026-08-25 13:19 修改: 2026-08-25 15:16

libssl3 CVE-2026-75803 低危 3.5.7-r0 3.5.8-r0 Issue summary: ChaCha20-Poly1305 and AES-OCB decryption with an empty ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-75803

镜像层: sha256:34884abbe92863fce933ed7c39c0e045631af0ed86d5cc0dfbdf9fdca426ce3c

发布日期: 2026-08-25 13:19 修改: 2026-08-25 13:19

libcrypto3 CVE-2026-63075 低危 3.5.7-r0 3.5.8-r0 openssl: QUIC ACK-only packet retention can cause memory exhaustion

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-63075

镜像层: sha256:34884abbe92863fce933ed7c39c0e045631af0ed86d5cc0dfbdf9fdca426ce3c

发布日期: 2026-08-25 13:19 修改: 2026-08-25 15:16

libcrypto3 CVE-2026-75803 低危 3.5.7-r0 3.5.8-r0 Issue summary: ChaCha20-Poly1305 and AES-OCB decryption with an empty ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-75803

镜像层: sha256:34884abbe92863fce933ed7c39c0e045631af0ed86d5cc0dfbdf9fdca426ce3c

发布日期: 2026-08-25 13:19 修改: 2026-08-25 13:19

libcrypto3 CVE-2026-14457 低危 3.5.7-r0 3.5.8-r0 openssl: RPK server signature algorithm selection can dereference a missing certificate

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-14457

镜像层: sha256:34884abbe92863fce933ed7c39c0e045631af0ed86d5cc0dfbdf9fdca426ce3c

发布日期: 2026-08-25 13:17 修改: 2026-08-25 14:16

pyc CVE-2026-6879 低危 3.14.5-r0 3.14.7-r0 python: Python: Performance degradation in XML processing due to quadratic time complexity

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-6879

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-07-28 15:17 修改: 2026-08-13 01:16

libcrypto3 CVE-2026-54874 低危 3.5.7-r0 3.5.8-r0 openssl: excessive memory use buffering DTLS records for a future epoch

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-54874

镜像层: sha256:34884abbe92863fce933ed7c39c0e045631af0ed86d5cc0dfbdf9fdca426ce3c

发布日期: 2026-08-25 13:19 修改: 2026-08-25 15:16

openssl CVE-2026-14457 低危 3.5.7-r0 3.5.8-r0 openssl: RPK server signature algorithm selection can dereference a missing certificate

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-14457

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-08-25 13:17 修改: 2026-08-25 14:16

openssl CVE-2026-54874 低危 3.5.7-r0 3.5.8-r0 openssl: excessive memory use buffering DTLS records for a future epoch

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-54874

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-08-25 13:19 修改: 2026-08-25 15:16

python3-pyc CVE-2026-6879 低危 3.14.5-r0 3.14.7-r0 python: Python: Performance degradation in XML processing due to quadratic time complexity

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-6879

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-07-28 15:17 修改: 2026-08-13 01:16

openssl CVE-2026-63073 低危 3.5.7-r0 3.5.8-r0 openssl: untrusted sender DN used as format string in CMP response validation

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-63073

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-08-25 13:19 修改: 2026-08-25 13:19

openssl CVE-2026-63074 低危 3.5.7-r0 3.5.8-r0 openssl: CMP indefinite cache growth of ExtraCerts

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-63074

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-08-25 13:19 修改: 2026-08-25 15:16

openssl CVE-2026-63075 低危 3.5.7-r0 3.5.8-r0 openssl: QUIC ACK-only packet retention can cause memory exhaustion

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-63075

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-08-25 13:19 修改: 2026-08-25 15:16

openssl CVE-2026-75803 低危 3.5.7-r0 3.5.8-r0 Issue summary: ChaCha20-Poly1305 and AES-OCB decryption with an empty ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-75803

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-08-25 13:19 修改: 2026-08-25 13:19

libcrypto3 CVE-2026-63073 低危 3.5.7-r0 3.5.8-r0 openssl: untrusted sender DN used as format string in CMP response validation

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-63073

镜像层: sha256:34884abbe92863fce933ed7c39c0e045631af0ed86d5cc0dfbdf9fdca426ce3c

发布日期: 2026-08-25 13:19 修改: 2026-08-25 13:19

libcrypto3 CVE-2026-63074 低危 3.5.7-r0 3.5.8-r0 openssl: CMP indefinite cache growth of ExtraCerts

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-63074

镜像层: sha256:34884abbe92863fce933ed7c39c0e045631af0ed86d5cc0dfbdf9fdca426ce3c

发布日期: 2026-08-25 13:19 修改: 2026-08-25 15:16

libssl3 CVE-2026-14457 低危 3.5.7-r0 3.5.8-r0 openssl: RPK server signature algorithm selection can dereference a missing certificate

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-14457

镜像层: sha256:34884abbe92863fce933ed7c39c0e045631af0ed86d5cc0dfbdf9fdca426ce3c

发布日期: 2026-08-25 13:17 修改: 2026-08-25 14:16

libssl3 CVE-2026-54874 低危 3.5.7-r0 3.5.8-r0 openssl: excessive memory use buffering DTLS records for a future epoch

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-54874

镜像层: sha256:34884abbe92863fce933ed7c39c0e045631af0ed86d5cc0dfbdf9fdca426ce3c

发布日期: 2026-08-25 13:19 修改: 2026-08-25 15:16

python3 CVE-2026-6879 低危 3.14.5-r0 3.14.7-r0 python: Python: Performance degradation in XML processing due to quadratic time complexity

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-6879

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-07-28 15:17 修改: 2026-08-13 01:16

libssl3 CVE-2026-63073 低危 3.5.7-r0 3.5.8-r0 openssl: untrusted sender DN used as format string in CMP response validation

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-63073

镜像层: sha256:34884abbe92863fce933ed7c39c0e045631af0ed86d5cc0dfbdf9fdca426ce3c

发布日期: 2026-08-25 13:19 修改: 2026-08-25 13:19

libssl3 CVE-2026-63074 低危 3.5.7-r0 3.5.8-r0 openssl: CMP indefinite cache growth of ExtraCerts

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-63074

镜像层: sha256:34884abbe92863fce933ed7c39c0e045631af0ed86d5cc0dfbdf9fdca426ce3c

发布日期: 2026-08-25 13:19 修改: 2026-08-25 15:16

python3-pycache-pyc0 CVE-2026-6879 低危 3.14.5-r0 3.14.7-r0 python: Python: Performance degradation in XML processing due to quadratic time complexity

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-6879

镜像层: sha256:cfbee8eb1e590858dbab36c7c21a114242bb1bd09857028e08741315bb2575c7

发布日期: 2026-07-28 15:17 修改: 2026-08-13 01:16

Java (jar)
低危漏洞:0 中危漏洞:5 高危漏洞:0 严重漏洞:0
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
at.yawk.lz4:lz4-java CVE-2026-59949 中危 1.10.3 1.11.1 yawkat LZ4 Java provides LZ4 compression for Java. Prior to 1.11.1, JN ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-59949

镜像层: sha256:e0d098fff75b2622420bd429e74cd3a3f48164da51113e91e703c08db355df59

发布日期: 2026-08-18 15:16 修改: 2026-08-18 18:18

io.netty:netty-codec-http CVE-2026-59903 中危 4.1.136.Final 4.2.17.Final, 4.1.137.Final Netty is an asynchronous, event-driven network application framework. ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-59903

镜像层: sha256:e0d098fff75b2622420bd429e74cd3a3f48164da51113e91e703c08db355df59

发布日期: 2026-08-17 18:17 修改: 2026-08-17 19:16

org.apache.logging.log4j:log4j-api CVE-2026-49844 中危 2.25.4 2.25.5, 2.26.1 org.apache.logging.log4j/log4j-api: Apache Log4j API: Malformed JSON output due to improper encoding of floating-point values

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-49844

镜像层: sha256:e0d098fff75b2622420bd429e74cd3a3f48164da51113e91e703c08db355df59

发布日期: 2026-07-10 22:16 修改: 2026-07-14 20:03

org.apache.logging.log4j:log4j-api CVE-2026-49844 中危 2.25.4 2.25.5, 2.26.1 org.apache.logging.log4j/log4j-api: Apache Log4j API: Malformed JSON output due to improper encoding of floating-point values

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-49844

镜像层: sha256:e0d098fff75b2622420bd429e74cd3a3f48164da51113e91e703c08db355df59

发布日期: 2026-07-10 22:16 修改: 2026-07-14 20:03

org.asynchttpclient:async-http-client CVE-2026-55688 中危 2.15.0 3.0.11, 2.16.0 async-http-client: AsyncHttpClient: Cookie injection allows planting cookies for unrelated domains

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-55688

镜像层: sha256:e0d098fff75b2622420bd429e74cd3a3f48164da51113e91e703c08db355df59

发布日期: 2026-07-01 20:17 修改: 2026-08-06 22:17

Python (python-pkg)
低危漏洞:0 中危漏洞:0 高危漏洞:0 严重漏洞:0
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
检测到您正在使用广告拦截插件,本站为公益站点,依赖广告维持运转 🙏 查看如何关闭 ×