docker.io/camptocamp/qgis-server:3.44-gdal3.10-desktop linux/amd64

docker.io/camptocamp/qgis-server:3.44-gdal3.10-desktop - Trivy安全扫描结果 扫描时间: 2026-06-26 23:51
全部漏洞信息
低危漏洞:75 中危漏洞:157 高危漏洞:32 严重漏洞:2

系统OS: ubuntu 24.04 扫描引擎: Trivy 扫描时间: 2026-06-26 23:51

docker.io/camptocamp/qgis-server:3.44-gdal3.10-desktop (ubuntu 24.04) (ubuntu)
低危漏洞:64 中危漏洞:115 高危漏洞:0 严重漏洞:0
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
binutils CVE-2025-69644 中危 2.42-4ubuntu2.10 binutils: Binutils: Denial of Service via crafted binary with malformed DWARF debug information

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69644

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 18:16 修改: 2026-06-17 10:00

binutils CVE-2025-69645 中危 2.42-4ubuntu2.10 binutils: Binutils objdump: Denial of Service via crafted DWARF debug information

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69645

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 18:16 修改: 2026-06-17 10:00

binutils CVE-2025-69646 中危 2.42-4ubuntu2.10 binutils: Binutils: Denial of Service via malformed DWARF debug_rnglists data

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69646

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 18:16 修改: 2026-06-17 10:00

binutils CVE-2025-69647 中危 2.42-4ubuntu2.10 binutils: infinite loop in readelf via crafted binary with malformed DWARF loclists data

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69647

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-09 15:15 修改: 2026-06-17 10:00

binutils CVE-2025-69648 中危 2.42-4ubuntu2.10 binutils: infinite loop in readelf via crafted binary with malformed DWARF .debug_rnglists data

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69648

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-09 15:15 修改: 2026-06-17 10:00

binutils CVE-2025-69651 中危 2.42-4ubuntu2.10 binutils: Binutils: Denial of Service via crafted ELF binary processing

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69651

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 18:16 修改: 2026-06-17 10:00

binutils CVE-2025-69652 中危 2.42-4ubuntu2.10 binutils: abort in readelf via crafted ELF binary with malformed DWARF abbrev or debug information

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69652

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 19:16 修改: 2026-06-17 10:00

binutils-common CVE-2025-69644 中危 2.42-4ubuntu2.10 binutils: Binutils: Denial of Service via crafted binary with malformed DWARF debug information

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69644

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 18:16 修改: 2026-06-17 10:00

binutils-common CVE-2025-69645 中危 2.42-4ubuntu2.10 binutils: Binutils objdump: Denial of Service via crafted DWARF debug information

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69645

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 18:16 修改: 2026-06-17 10:00

binutils-common CVE-2025-69646 中危 2.42-4ubuntu2.10 binutils: Binutils: Denial of Service via malformed DWARF debug_rnglists data

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69646

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 18:16 修改: 2026-06-17 10:00

binutils-common CVE-2025-69647 中危 2.42-4ubuntu2.10 binutils: infinite loop in readelf via crafted binary with malformed DWARF loclists data

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69647

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-09 15:15 修改: 2026-06-17 10:00

binutils-common CVE-2025-69648 中危 2.42-4ubuntu2.10 binutils: infinite loop in readelf via crafted binary with malformed DWARF .debug_rnglists data

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69648

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-09 15:15 修改: 2026-06-17 10:00

binutils-common CVE-2025-69651 中危 2.42-4ubuntu2.10 binutils: Binutils: Denial of Service via crafted ELF binary processing

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69651

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 18:16 修改: 2026-06-17 10:00

binutils-common CVE-2025-69652 中危 2.42-4ubuntu2.10 binutils: abort in readelf via crafted ELF binary with malformed DWARF abbrev or debug information

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69652

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 19:16 修改: 2026-06-17 10:00

binutils-x86-64-linux-gnu CVE-2025-69644 中危 2.42-4ubuntu2.10 binutils: Binutils: Denial of Service via crafted binary with malformed DWARF debug information

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69644

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 18:16 修改: 2026-06-17 10:00

binutils-x86-64-linux-gnu CVE-2025-69645 中危 2.42-4ubuntu2.10 binutils: Binutils objdump: Denial of Service via crafted DWARF debug information

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69645

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 18:16 修改: 2026-06-17 10:00

binutils-x86-64-linux-gnu CVE-2025-69646 中危 2.42-4ubuntu2.10 binutils: Binutils: Denial of Service via malformed DWARF debug_rnglists data

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69646

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 18:16 修改: 2026-06-17 10:00

binutils-x86-64-linux-gnu CVE-2025-69647 中危 2.42-4ubuntu2.10 binutils: infinite loop in readelf via crafted binary with malformed DWARF loclists data

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69647

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-09 15:15 修改: 2026-06-17 10:00

binutils-x86-64-linux-gnu CVE-2025-69648 中危 2.42-4ubuntu2.10 binutils: infinite loop in readelf via crafted binary with malformed DWARF .debug_rnglists data

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69648

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-09 15:15 修改: 2026-06-17 10:00

binutils-x86-64-linux-gnu CVE-2025-69651 中危 2.42-4ubuntu2.10 binutils: Binutils: Denial of Service via crafted ELF binary processing

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69651

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 18:16 修改: 2026-06-17 10:00

binutils-x86-64-linux-gnu CVE-2025-69652 中危 2.42-4ubuntu2.10 binutils: abort in readelf via crafted ELF binary with malformed DWARF abbrev or debug information

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69652

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 19:16 修改: 2026-06-17 10:00

bsdutils CVE-2026-27456 中危 1:2.39.3-9ubuntu6.5 util-linux: TOCTOU in the mount program when setting up loop devices

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-27456

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2026-04-03 22:16 修改: 2026-06-17 10:27

curl CVE-2026-11856 中危 8.5.0-2ubuntu10.9

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-11856

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

curl CVE-2026-8927 中危 8.5.0-2ubuntu10.9

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-8927

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

libapache2-mod-fcgid CVE-2016-1000104 中危 1:2.3.9-4 mod_fcgid: mod_fcgid sets environmental variable based on user supplied Proxy request header

漏洞详情: https://avd.aquasec.com/nvd/cve-2016-1000104

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2019-12-03 22:15 修改: 2024-11-21 02:42

libassimp5 CVE-2024-40724 中危 5.3.1+ds-2build1 Heap-based buffer overflow vulnerability in Assimp versions prior to 5 ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-40724

镜像层: sha256:05b3feabed39a255047c72c51f0741872f3ca8f5011d623ee5c3aaf27dbacefb

发布日期: 2024-07-19 08:15 修改: 2026-06-17 07:46

libavahi-client3 CVE-2025-59529 中危 0.8-13ubuntu6.2 avahi: simple clients denial-of-service

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-59529

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2025-12-18 21:15 修改: 2026-06-17 09:46

libavahi-common-data CVE-2025-59529 中危 0.8-13ubuntu6.2 avahi: simple clients denial-of-service

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-59529

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2025-12-18 21:15 修改: 2026-06-17 09:46

libavahi-common3 CVE-2025-59529 中危 0.8-13ubuntu6.2 avahi: simple clients denial-of-service

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-59529

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2025-12-18 21:15 修改: 2026-06-17 09:46

libbinutils CVE-2025-69644 中危 2.42-4ubuntu2.10 binutils: Binutils: Denial of Service via crafted binary with malformed DWARF debug information

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69644

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 18:16 修改: 2026-06-17 10:00

libbinutils CVE-2025-69645 中危 2.42-4ubuntu2.10 binutils: Binutils objdump: Denial of Service via crafted DWARF debug information

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69645

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 18:16 修改: 2026-06-17 10:00

libbinutils CVE-2025-69646 中危 2.42-4ubuntu2.10 binutils: Binutils: Denial of Service via malformed DWARF debug_rnglists data

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69646

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 18:16 修改: 2026-06-17 10:00

libbinutils CVE-2025-69647 中危 2.42-4ubuntu2.10 binutils: infinite loop in readelf via crafted binary with malformed DWARF loclists data

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69647

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-09 15:15 修改: 2026-06-17 10:00

libbinutils CVE-2025-69648 中危 2.42-4ubuntu2.10 binutils: infinite loop in readelf via crafted binary with malformed DWARF .debug_rnglists data

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69648

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-09 15:15 修改: 2026-06-17 10:00

libbinutils CVE-2025-69651 中危 2.42-4ubuntu2.10 binutils: Binutils: Denial of Service via crafted ELF binary processing

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69651

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 18:16 修改: 2026-06-17 10:00

libbinutils CVE-2025-69652 中危 2.42-4ubuntu2.10 binutils: abort in readelf via crafted ELF binary with malformed DWARF abbrev or debug information

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69652

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 19:16 修改: 2026-06-17 10:00

libblkid1 CVE-2026-27456 中危 2.39.3-9ubuntu6.5 util-linux: TOCTOU in the mount program when setting up loop devices

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-27456

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2026-04-03 22:16 修改: 2026-06-17 10:27

libc-bin CVE-2026-4046 中危 2.39-0ubuntu8.7 glibc: glibc: Denial of Service via iconv() function with specific character sets

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-4046

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2026-03-30 18:16 修改: 2026-06-17 10:55

libc-bin CVE-2026-4437 中危 2.39-0ubuntu8.7 glibc: glibc: Incorrect DNS response parsing via crafted DNS server response

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-4437

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2026-03-20 20:16 修改: 2026-06-17 10:56

libc-bin CVE-2026-4438 中危 2.39-0ubuntu8.7 glibc: glibc: Invalid DNS hostname returned via gethostbyaddr functions

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-4438

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2026-03-20 20:16 修改: 2026-06-17 10:56

libc-bin CVE-2026-5435 中危 2.39-0ubuntu8.7 glibc: glibc: Out-of-bounds write via TSIG record processing

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-5435

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2026-04-28 13:19 修改: 2026-06-17 10:59

libc-bin CVE-2026-6238 中危 2.39-0ubuntu8.7 glibc: glibc: Application crash or uninitialized memory read via crafted DNS response

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-6238

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2026-04-28 19:37 修改: 2026-06-19 21:17

libc6 CVE-2026-4046 中危 2.39-0ubuntu8.7 glibc: glibc: Denial of Service via iconv() function with specific character sets

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-4046

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2026-03-30 18:16 修改: 2026-06-17 10:55

libc6 CVE-2026-4437 中危 2.39-0ubuntu8.7 glibc: glibc: Incorrect DNS response parsing via crafted DNS server response

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-4437

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2026-03-20 20:16 修改: 2026-06-17 10:56

libc6 CVE-2026-4438 中危 2.39-0ubuntu8.7 glibc: glibc: Invalid DNS hostname returned via gethostbyaddr functions

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-4438

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2026-03-20 20:16 修改: 2026-06-17 10:56

libc6 CVE-2026-5435 中危 2.39-0ubuntu8.7 glibc: glibc: Out-of-bounds write via TSIG record processing

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-5435

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2026-04-28 13:19 修改: 2026-06-17 10:59

libc6 CVE-2026-6238 中危 2.39-0ubuntu8.7 glibc: glibc: Application crash or uninitialized memory read via crafted DNS response

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-6238

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2026-04-28 19:37 修改: 2026-06-19 21:17

libctf-nobfd0 CVE-2025-69644 中危 2.42-4ubuntu2.10 binutils: Binutils: Denial of Service via crafted binary with malformed DWARF debug information

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69644

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 18:16 修改: 2026-06-17 10:00

libctf-nobfd0 CVE-2025-69645 中危 2.42-4ubuntu2.10 binutils: Binutils objdump: Denial of Service via crafted DWARF debug information

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69645

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 18:16 修改: 2026-06-17 10:00

libctf-nobfd0 CVE-2025-69646 中危 2.42-4ubuntu2.10 binutils: Binutils: Denial of Service via malformed DWARF debug_rnglists data

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69646

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 18:16 修改: 2026-06-17 10:00

libctf-nobfd0 CVE-2025-69647 中危 2.42-4ubuntu2.10 binutils: infinite loop in readelf via crafted binary with malformed DWARF loclists data

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69647

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-09 15:15 修改: 2026-06-17 10:00

libctf-nobfd0 CVE-2025-69648 中危 2.42-4ubuntu2.10 binutils: infinite loop in readelf via crafted binary with malformed DWARF .debug_rnglists data

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69648

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-09 15:15 修改: 2026-06-17 10:00

libctf-nobfd0 CVE-2025-69651 中危 2.42-4ubuntu2.10 binutils: Binutils: Denial of Service via crafted ELF binary processing

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69651

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 18:16 修改: 2026-06-17 10:00

libctf-nobfd0 CVE-2025-69652 中危 2.42-4ubuntu2.10 binutils: abort in readelf via crafted ELF binary with malformed DWARF abbrev or debug information

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69652

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 19:16 修改: 2026-06-17 10:00

libctf0 CVE-2025-69644 中危 2.42-4ubuntu2.10 binutils: Binutils: Denial of Service via crafted binary with malformed DWARF debug information

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69644

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 18:16 修改: 2026-06-17 10:00

libctf0 CVE-2025-69645 中危 2.42-4ubuntu2.10 binutils: Binutils objdump: Denial of Service via crafted DWARF debug information

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69645

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 18:16 修改: 2026-06-17 10:00

libctf0 CVE-2025-69646 中危 2.42-4ubuntu2.10 binutils: Binutils: Denial of Service via malformed DWARF debug_rnglists data

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69646

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 18:16 修改: 2026-06-17 10:00

libctf0 CVE-2025-69647 中危 2.42-4ubuntu2.10 binutils: infinite loop in readelf via crafted binary with malformed DWARF loclists data

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69647

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-09 15:15 修改: 2026-06-17 10:00

libctf0 CVE-2025-69648 中危 2.42-4ubuntu2.10 binutils: infinite loop in readelf via crafted binary with malformed DWARF .debug_rnglists data

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69648

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-09 15:15 修改: 2026-06-17 10:00

libctf0 CVE-2025-69651 中危 2.42-4ubuntu2.10 binutils: Binutils: Denial of Service via crafted ELF binary processing

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69651

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 18:16 修改: 2026-06-17 10:00

libctf0 CVE-2025-69652 中危 2.42-4ubuntu2.10 binutils: abort in readelf via crafted ELF binary with malformed DWARF abbrev or debug information

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69652

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 19:16 修改: 2026-06-17 10:00

libcurl3t64-gnutls CVE-2026-11856 中危 8.5.0-2ubuntu10.9

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-11856

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

libcurl3t64-gnutls CVE-2026-8927 中危 8.5.0-2ubuntu10.9

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-8927

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

libcurl4t64 CVE-2026-11856 中危 8.5.0-2ubuntu10.9

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-11856

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

libcurl4t64 CVE-2026-8927 中危 8.5.0-2ubuntu10.9

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-8927

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

libexpat1 CVE-2025-66382 中危 2.6.1-2ubuntu0.4 libexpat: libexpat: Denial of service via crafted file processing

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-66382

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2025-11-28 07:15 修改: 2026-06-17 09:56

libgprofng0 CVE-2025-69644 中危 2.42-4ubuntu2.10 binutils: Binutils: Denial of Service via crafted binary with malformed DWARF debug information

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69644

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 18:16 修改: 2026-06-17 10:00

libgprofng0 CVE-2025-69645 中危 2.42-4ubuntu2.10 binutils: Binutils objdump: Denial of Service via crafted DWARF debug information

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69645

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 18:16 修改: 2026-06-17 10:00

libgprofng0 CVE-2025-69646 中危 2.42-4ubuntu2.10 binutils: Binutils: Denial of Service via malformed DWARF debug_rnglists data

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69646

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 18:16 修改: 2026-06-17 10:00

libgprofng0 CVE-2025-69647 中危 2.42-4ubuntu2.10 binutils: infinite loop in readelf via crafted binary with malformed DWARF loclists data

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69647

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-09 15:15 修改: 2026-06-17 10:00

libgprofng0 CVE-2025-69648 中危 2.42-4ubuntu2.10 binutils: infinite loop in readelf via crafted binary with malformed DWARF .debug_rnglists data

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69648

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-09 15:15 修改: 2026-06-17 10:00

libgprofng0 CVE-2025-69651 中危 2.42-4ubuntu2.10 binutils: Binutils: Denial of Service via crafted ELF binary processing

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69651

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 18:16 修改: 2026-06-17 10:00

libgprofng0 CVE-2025-69652 中危 2.42-4ubuntu2.10 binutils: abort in readelf via crafted ELF binary with malformed DWARF abbrev or debug information

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69652

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 19:16 修改: 2026-06-17 10:00

libmount1 CVE-2026-27456 中危 2.39.3-9ubuntu6.5 util-linux: TOCTOU in the mount program when setting up loop devices

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-27456

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2026-04-03 22:16 修改: 2026-06-17 10:27

libopenjp2-7 CVE-2023-39328 中危 2.5.0-2ubuntu0.5 openjpeg: denail of service via crafted image file

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39328

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2024-07-09 14:15 修改: 2026-06-17 06:12

libopenjp2-7 CVE-2023-39329 中危 2.5.0-2ubuntu0.5 openjpeg: Resource exhaustion will occur in the opj_t1_decode_cblks function in the tcd.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39329

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2024-07-13 03:15 修改: 2026-06-17 06:12

libpixman-1-0 CVE-2023-37769 中危 0.42.2-1build1 stress-test master commit e4c878 was discovered to contain a FPE vulne ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-37769

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2023-07-17 20:15 修改: 2026-06-17 06:08

libprotobuf-lite32t64 CVE-2026-6409 中危 3.21.12-8.2ubuntu0.3 A Denial of Service (DoS) vulnerability exists in the Protobuf PHP lib ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-6409

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-04-16 15:17 修改: 2026-06-17 11:00

libprotobuf32t64 CVE-2026-6409 中危 3.21.12-8.2ubuntu0.3 A Denial of Service (DoS) vulnerability exists in the Protobuf PHP lib ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-6409

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-04-16 15:17 修改: 2026-06-17 11:00

libpython3.12-minimal CVE-2025-13462 中危 3.12.3-1ubuntu0.13 cpython: cpython: `tarfile` module misinterprets crafted tar archives leading to data integrity issues

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-13462

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2026-03-12 18:16 修改: 2026-06-17 08:34

libpython3.12-minimal CVE-2026-2297 中危 3.12.3-1ubuntu0.13 cpython: CPython: Logging Bypass in Legacy .pyc File Handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-2297

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2026-03-04 23:16 修改: 2026-06-17 10:30

libpython3.12-stdlib CVE-2025-13462 中危 3.12.3-1ubuntu0.13 cpython: cpython: `tarfile` module misinterprets crafted tar archives leading to data integrity issues

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-13462

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2026-03-12 18:16 修改: 2026-06-17 08:34

libpython3.12-stdlib CVE-2026-2297 中危 3.12.3-1ubuntu0.13 cpython: CPython: Logging Bypass in Legacy .pyc File Handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-2297

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2026-03-04 23:16 修改: 2026-06-17 10:30

libpython3.12t64 CVE-2025-13462 中危 3.12.3-1ubuntu0.13 cpython: cpython: `tarfile` module misinterprets crafted tar archives leading to data integrity issues

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-13462

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2026-03-12 18:16 修改: 2026-06-17 08:34

libpython3.12t64 CVE-2026-2297 中危 3.12.3-1ubuntu0.13 cpython: CPython: Logging Bypass in Legacy .pyc File Handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-2297

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2026-03-04 23:16 修改: 2026-06-17 10:30

libqt5qml5 CVE-2025-12385 中危 5.15.13+dfsg-1ubuntu0.1 Allocation of Resources Without Limits or Throttling, Improper Validat ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-12385

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2025-12-03 20:16 修改: 2026-06-17 08:32

libqt5qmlmodels5 CVE-2025-12385 中危 5.15.13+dfsg-1ubuntu0.1 Allocation of Resources Without Limits or Throttling, Improper Validat ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-12385

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2025-12-03 20:16 修改: 2026-06-17 08:32

libqt5quick5 CVE-2025-12385 中危 5.15.13+dfsg-1ubuntu0.1 Allocation of Resources Without Limits or Throttling, Improper Validat ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-12385

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2025-12-03 20:16 修改: 2026-06-17 08:32

libqt5quickwidgets5 CVE-2025-12385 中危 5.15.13+dfsg-1ubuntu0.1 Allocation of Resources Without Limits or Throttling, Improper Validat ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-12385

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2025-12-03 20:16 修改: 2026-06-17 08:32

libsframe1 CVE-2025-69644 中危 2.42-4ubuntu2.10 binutils: Binutils: Denial of Service via crafted binary with malformed DWARF debug information

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69644

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 18:16 修改: 2026-06-17 10:00

libsframe1 CVE-2025-69645 中危 2.42-4ubuntu2.10 binutils: Binutils objdump: Denial of Service via crafted DWARF debug information

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69645

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 18:16 修改: 2026-06-17 10:00

libsframe1 CVE-2025-69646 中危 2.42-4ubuntu2.10 binutils: Binutils: Denial of Service via malformed DWARF debug_rnglists data

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69646

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 18:16 修改: 2026-06-17 10:00

libsframe1 CVE-2025-69647 中危 2.42-4ubuntu2.10 binutils: infinite loop in readelf via crafted binary with malformed DWARF loclists data

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69647

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-09 15:15 修改: 2026-06-17 10:00

libsframe1 CVE-2025-69648 中危 2.42-4ubuntu2.10 binutils: infinite loop in readelf via crafted binary with malformed DWARF .debug_rnglists data

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69648

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-09 15:15 修改: 2026-06-17 10:00

libsframe1 CVE-2025-69651 中危 2.42-4ubuntu2.10 binutils: Binutils: Denial of Service via crafted ELF binary processing

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69651

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 18:16 修改: 2026-06-17 10:00

libsframe1 CVE-2025-69652 中危 2.42-4ubuntu2.10 binutils: abort in readelf via crafted ELF binary with malformed DWARF abbrev or debug information

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69652

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-03-06 19:16 修改: 2026-06-17 10:00

libsmartcols1 CVE-2026-27456 中危 2.39.3-9ubuntu6.5 util-linux: TOCTOU in the mount program when setting up loop devices

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-27456

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2026-04-03 22:16 修改: 2026-06-17 10:27

libsndfile1 CVE-2025-52194 中危 1.2.2-1ubuntu5.24.04.1 libsndfile: buffer overflow when processing crafted IRCAM audio files

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-52194

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2025-08-21 15:15 修改: 2026-06-17 09:36

libsndfile1 CVE-2026-37555 中危 1.2.2-1ubuntu5.24.04.1 libsndfile: integer overflow in ima_reader_init()

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-37555

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-04-29 16:16 修改: 2026-06-17 10:41

libuuid1 CVE-2026-27456 中危 2.39.3-9ubuntu6.5 util-linux: TOCTOU in the mount program when setting up loop devices

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-27456

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2026-04-03 22:16 修改: 2026-06-17 10:27

libxpm4 CVE-2026-4367 中危 1:3.5.17-1build2 libXpm: libXpm: Denial of Service via out-of-bounds read in XPM file parsing

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-4367

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-06-16 19:16 修改: 2026-06-17 10:56

libxslt1.1 CVE-2025-10911 中危 1.1.39-0exp1ubuntu0.24.04.3 libxslt: use-after-free with key data stored cross-RVT

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-10911

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2025-09-25 16:15 修改: 2026-06-25 19:16

libxslt1.1 CVE-2025-7425 中危 1.1.39-0exp1ubuntu0.24.04.3 libxslt: libxml2: Heap Use-After-Free in libxslt caused by atype corruption in xmlAttrPtr

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-7425

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2025-07-10 14:15 修改: 2026-06-25 03:16

mount CVE-2026-27456 中危 2.39.3-9ubuntu6.5 util-linux: TOCTOU in the mount program when setting up loop devices

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-27456

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2026-04-03 22:16 修改: 2026-06-17 10:27

python3-pip CVE-2024-35195 中危 24.0+dfsg-1ubuntu1.3 requests: subsequent requests to the same host ignore cert verification

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-35195

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2024-05-20 21:15 修改: 2026-06-17 07:34

python3-pip CVE-2025-66418 中危 24.0+dfsg-1ubuntu1.3 urllib3: urllib3: Unbounded decompression chain leads to resource exhaustion

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-66418

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2025-12-05 16:15 修改: 2026-06-17 09:56

python3-pip CVE-2025-66471 中危 24.0+dfsg-1ubuntu1.3 urllib3: urllib3 Streaming API improperly handles highly compressed data

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-66471

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2025-12-05 17:16 修改: 2026-06-17 09:56

python3-pip CVE-2026-21441 中危 24.0+dfsg-1ubuntu1.3 urllib3: urllib3 vulnerable to decompression-bomb safeguard bypass when following HTTP redirects (streaming API)

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-21441

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2026-01-07 22:15 修改: 2026-06-17 10:18

python3-wheel CVE-2026-24049 中危 0.42.0-2 wheel: wheel: Privilege Escalation or Arbitrary Code Execution via malicious wheel file unpacking

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-24049

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2026-01-22 05:16 修改: 2026-06-17 10:22

python3.12 CVE-2025-13462 中危 3.12.3-1ubuntu0.13 cpython: cpython: `tarfile` module misinterprets crafted tar archives leading to data integrity issues

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-13462

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2026-03-12 18:16 修改: 2026-06-17 08:34

python3.12 CVE-2026-2297 中危 3.12.3-1ubuntu0.13 cpython: CPython: Logging Bypass in Legacy .pyc File Handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-2297

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2026-03-04 23:16 修改: 2026-06-17 10:30

python3.12-minimal CVE-2025-13462 中危 3.12.3-1ubuntu0.13 cpython: cpython: `tarfile` module misinterprets crafted tar archives leading to data integrity issues

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-13462

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2026-03-12 18:16 修改: 2026-06-17 08:34

python3.12-minimal CVE-2026-2297 中危 3.12.3-1ubuntu0.13 cpython: CPython: Logging Bypass in Legacy .pyc File Handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-2297

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2026-03-04 23:16 修改: 2026-06-17 10:30

tar CVE-2025-45582 中危 1.35+dfsg-3build1 tar: Tar path traversal

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-45582

镜像层: sha256:8901a649dd5a9284fa6206a08f3ba3b5a12fddbfd2f82c880e68cdb699d98bfb

发布日期: 2025-07-11 17:15 修改: 2026-06-17 09:25

util-linux CVE-2026-27456 中危 2.39.3-9ubuntu6.5 util-linux: TOCTOU in the mount program when setting up loop devices

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-27456

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2026-04-03 22:16 修改: 2026-06-17 10:27

binutils CVE-2017-13716 低危 2.42-4ubuntu2.10 binutils: Memory leak with the C++ symbol demangler routine in libiberty

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-13716

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2017-08-28 21:29 修改: 2026-06-17 01:05

curl CVE-2026-10536 低危 8.5.0-2ubuntu10.9

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-10536

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

curl CVE-2026-12064 低危 8.5.0-2ubuntu10.9

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-12064

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

curl CVE-2026-8286 低危 8.5.0-2ubuntu10.9

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-8286

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

libgprofng0 CVE-2017-13716 低危 2.42-4ubuntu2.10 binutils: Memory leak with the C++ symbol demangler routine in libiberty

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-13716

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2017-08-28 21:29 修改: 2026-06-17 01:05

libgprofng0 CVE-2025-1152 低危 2.42-4ubuntu2.10 binutils: GNU Binutils ld xstrdup.c xstrdup memory leak

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-1152

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2025-02-10 18:15 修改: 2026-06-17 08:38

libharfbuzz0b CVE-2026-22693 低危 8.3.0-2build2 harfbuzz: Null Pointer Dereference in harfbuzz

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-22693

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2026-01-10 06:15 修改: 2026-06-17 10:20

libicu74 CVE-2025-5222 低危 74.2-1ubuntu3.1 icu: Stack buffer overflow in the SRBRoot::addTag function

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-5222

镜像层: sha256:93f37c209a9049dd484ba7639309e273e6d0ebdbb9ff50ed13c67b9a6f3ff001

发布日期: 2025-05-27 21:15 修改: 2026-06-25 05:16

libminizip1t64 CVE-2026-27171 低危 1:1.3.dfsg-3.1ubuntu2.1 zlib: zlib: Denial of Service via infinite loop in CRC32 combine functions

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-27171

镜像层: sha256:93f37c209a9049dd484ba7639309e273e6d0ebdbb9ff50ed13c67b9a6f3ff001

发布日期: 2026-02-18 04:16 修改: 2026-06-17 10:26

curl CVE-2026-8458 低危 8.5.0-2ubuntu10.9

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-8458

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

curl CVE-2026-8924 低危 8.5.0-2ubuntu10.9

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-8924

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

libctf-nobfd0 CVE-2017-13716 低危 2.42-4ubuntu2.10 binutils: Memory leak with the C++ symbol demangler routine in libiberty

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-13716

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2017-08-28 21:29 修改: 2026-06-17 01:05

libopenjp2-7 CVE-2019-6988 低危 2.5.0-2ubuntu0.5 openjpeg: DoS via memory exhaustion in opj_decompress

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-6988

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2019-01-28 16:29 修改: 2026-06-17 02:39

libctf-nobfd0 CVE-2025-1152 低危 2.42-4ubuntu2.10 binutils: GNU Binutils ld xstrdup.c xstrdup memory leak

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-1152

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2025-02-10 18:15 修改: 2026-06-17 08:38

curl CVE-2026-8932 低危 8.5.0-2ubuntu10.9

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-8932

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

libbinutils CVE-2017-13716 低危 2.42-4ubuntu2.10 binutils: Memory leak with the C++ symbol demangler routine in libiberty

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-13716

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2017-08-28 21:29 修改: 2026-06-17 01:05

libbinutils CVE-2025-1152 低危 2.42-4ubuntu2.10 binutils: GNU Binutils ld xstrdup.c xstrdup memory leak

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-1152

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2025-02-10 18:15 修改: 2026-06-17 08:38

curl CVE-2026-9547 低危 8.5.0-2ubuntu10.9

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9547

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

binutils-common CVE-2017-13716 低危 2.42-4ubuntu2.10 binutils: Memory leak with the C++ symbol demangler routine in libiberty

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-13716

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2017-08-28 21:29 修改: 2026-06-17 01:05

binutils-x86-64-linux-gnu CVE-2017-13716 低危 2.42-4ubuntu2.10 binutils: Memory leak with the C++ symbol demangler routine in libiberty

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-13716

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2017-08-28 21:29 修改: 2026-06-17 01:05

binutils-x86-64-linux-gnu CVE-2025-1152 低危 2.42-4ubuntu2.10 binutils: GNU Binutils ld xstrdup.c xstrdup memory leak

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-1152

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2025-02-10 18:15 修改: 2026-06-17 08:38

libctf0 CVE-2017-13716 低危 2.42-4ubuntu2.10 binutils: Memory leak with the C++ symbol demangler routine in libiberty

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-13716

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2017-08-28 21:29 修改: 2026-06-17 01:05

libctf0 CVE-2025-1152 低危 2.42-4ubuntu2.10 binutils: GNU Binutils ld xstrdup.c xstrdup memory leak

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-1152

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2025-02-10 18:15 修改: 2026-06-17 08:38

libavahi-client3 CVE-2024-52615 低危 0.8-13ubuntu6.2 avahi: Avahi Wide-Area DNS Uses Constant Source Port

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-52615

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2024-11-21 21:15 修改: 2026-06-25 04:17

libavahi-client3 CVE-2024-52616 低危 0.8-13ubuntu6.2 avahi: Avahi Wide-Area DNS Predictable Transaction IDs

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-52616

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2024-11-21 21:15 修改: 2026-06-25 04:17

libcurl3t64-gnutls CVE-2026-10536 低危 8.5.0-2ubuntu10.9

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-10536

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

libcurl3t64-gnutls CVE-2026-12064 低危 8.5.0-2ubuntu10.9

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-12064

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

libcurl3t64-gnutls CVE-2026-8286 低危 8.5.0-2ubuntu10.9

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-8286

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

libcurl3t64-gnutls CVE-2026-8458 低危 8.5.0-2ubuntu10.9

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-8458

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

libcurl3t64-gnutls CVE-2026-8924 低危 8.5.0-2ubuntu10.9

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-8924

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

libcurl3t64-gnutls CVE-2026-8932 低危 8.5.0-2ubuntu10.9

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-8932

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

libcurl3t64-gnutls CVE-2026-9547 低危 8.5.0-2ubuntu10.9

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9547

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

binutils-common CVE-2025-1152 低危 2.42-4ubuntu2.10 binutils: GNU Binutils ld xstrdup.c xstrdup memory leak

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-1152

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2025-02-10 18:15 修改: 2026-06-17 08:38

libsframe1 CVE-2017-13716 低危 2.42-4ubuntu2.10 binutils: Memory leak with the C++ symbol demangler routine in libiberty

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-13716

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2017-08-28 21:29 修改: 2026-06-17 01:05

libsframe1 CVE-2025-1152 低危 2.42-4ubuntu2.10 binutils: GNU Binutils ld xstrdup.c xstrdup memory leak

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-1152

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2025-02-10 18:15 修改: 2026-06-17 08:38

libavahi-common-data CVE-2024-52615 低危 0.8-13ubuntu6.2 avahi: Avahi Wide-Area DNS Uses Constant Source Port

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-52615

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2024-11-21 21:15 修改: 2026-06-25 04:17

libcurl4t64 CVE-2026-10536 低危 8.5.0-2ubuntu10.9

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-10536

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

libcurl4t64 CVE-2026-12064 低危 8.5.0-2ubuntu10.9

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-12064

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

libsndfile1 CVE-2024-50613 低危 1.2.2-1ubuntu5.24.04.1 libsndfile: Reachable assertion in mpeg_l3_encoder_close

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-50613

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2024-10-27 22:15 修改: 2026-06-17 08:04

libsystemd0 CVE-2026-40228 低危 255.4-1ubuntu8.16 systemd: systemd-journald: Unintended output to user terminals via logger command

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-40228

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2026-04-10 16:16 修改: 2026-06-17 10:44

libudev1 CVE-2026-40228 低危 255.4-1ubuntu8.16 systemd: systemd-journald: Unintended output to user terminals via logger command

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-40228

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2026-04-10 16:16 修改: 2026-06-17 10:44

libcurl4t64 CVE-2026-8286 低危 8.5.0-2ubuntu10.9

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-8286

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

libxerces-c3.2t64 CVE-2012-0880 低危 3.2.4+debian-1.2ubuntu2 xml: xerces-c hash table collisions CPU usage DoS (oCERT-2011-003)

漏洞详情: https://avd.aquasec.com/nvd/cve-2012-0880

镜像层: sha256:93f37c209a9049dd484ba7639309e273e6d0ebdbb9ff50ed13c67b9a6f3ff001

发布日期: 2017-08-08 21:29 修改: 2026-05-13 00:24

libcurl4t64 CVE-2026-8458 低危 8.5.0-2ubuntu10.9

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-8458

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

libcurl4t64 CVE-2026-8924 低危 8.5.0-2ubuntu10.9

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-8924

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

libcurl4t64 CVE-2026-8932 低危 8.5.0-2ubuntu10.9

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-8932

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

login CVE-2024-56433 低危 1:4.13+dfsg1-4ubuntu3.2 shadow-utils: Default subordinate ID configuration in /etc/login.defs could lead to compromise

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-56433

镜像层: sha256:8901a649dd5a9284fa6206a08f3ba3b5a12fddbfd2f82c880e68cdb699d98bfb

发布日期: 2024-12-26 09:15 修改: 2026-06-17 08:12

libcurl4t64 CVE-2026-9547 低危 8.5.0-2ubuntu10.9

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9547

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

passwd CVE-2024-56433 低危 1:4.13+dfsg1-4ubuntu3.2 shadow-utils: Default subordinate ID configuration in /etc/login.defs could lead to compromise

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-56433

镜像层: sha256:8901a649dd5a9284fa6206a08f3ba3b5a12fddbfd2f82c880e68cdb699d98bfb

发布日期: 2024-12-26 09:15 修改: 2026-06-17 08:12

libdw1t64 CVE-2025-1352 低危 0.190-1.1ubuntu0.1 elfutils: GNU elfutils eu-readelf libdw_alloc.c __libdw_thread_tail memory corruption

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-1352

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2025-02-16 15:15 修改: 2026-06-17 08:38

libdw1t64 CVE-2025-1376 低危 0.190-1.1ubuntu0.1 elfutils: GNU elfutils eu-strip elf_strptr.c elf_strptr denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-1376

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2025-02-17 05:15 修改: 2026-06-17 08:39

libelf1t64 CVE-2025-1352 低危 0.190-1.1ubuntu0.1 elfutils: GNU elfutils eu-readelf libdw_alloc.c __libdw_thread_tail memory corruption

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-1352

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2025-02-16 15:15 修改: 2026-06-17 08:38

libelf1t64 CVE-2025-1376 低危 0.190-1.1ubuntu0.1 elfutils: GNU elfutils eu-strip elf_strptr.c elf_strptr denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-1376

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2025-02-17 05:15 修改: 2026-06-17 08:39

python3-pip CVE-2026-1703 低危 24.0+dfsg-1ubuntu1.3 pip: pip: Information disclosure via path traversal when installing crafted wheel archives

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-1703

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2026-02-02 15:16 修改: 2026-06-17 10:16

libexiv2-27 CVE-2020-18773 低危 0.27.6-1ubuntu0.3 exiv2: invalid memory access in the decode function in iptc.cpp via a crafted tif file

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-18773

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2021-08-23 22:15 修改: 2026-06-17 02:59

libexiv2-27 CVE-2020-18774 低危 0.27.6-1ubuntu0.3 exiv2: float point exception in the printLong function in tags_int.cpp via a crafted tif file

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-18774

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2021-08-23 22:15 修改: 2026-06-17 02:59

libavahi-common-data CVE-2024-52616 低危 0.8-13ubuntu6.2 avahi: Avahi Wide-Area DNS Predictable Transaction IDs

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-52616

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2024-11-21 21:15 修改: 2026-06-25 04:17

libgcrypt20 CVE-2024-2236 低危 1.10.3-2ubuntu0.1 libgcrypt: vulnerable to Marvin Attack

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-2236

镜像层: sha256:89663d5c2ddb3ce7656f04f966ebc2156fb3642584e4bfc5fb0de15a241decee

发布日期: 2024-03-06 22:15 修改: 2026-06-17 07:24

binutils CVE-2025-1152 低危 2.42-4ubuntu2.10 binutils: GNU Binutils ld xstrdup.c xstrdup memory leak

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-1152

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2025-02-10 18:15 修改: 2026-06-17 08:38

libavahi-common3 CVE-2024-52615 低危 0.8-13ubuntu6.2 avahi: Avahi Wide-Area DNS Uses Constant Source Port

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-52615

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2024-11-21 21:15 修改: 2026-06-25 04:17

libavahi-common3 CVE-2024-52616 低危 0.8-13ubuntu6.2 avahi: Avahi Wide-Area DNS Predictable Transaction IDs

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-52616

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2024-11-21 21:15 修改: 2026-06-25 04:17

xserver-common CVE-2023-5574 低危 2:21.1.12-1ubuntu1.6 xorg-x11-server: Use-after-free bug in DamageDestroy

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-5574

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2023-10-25 20:15 修改: 2026-06-23 18:17

xvfb CVE-2023-5574 低危 2:21.1.12-1ubuntu1.6 xorg-x11-server: Use-after-free bug in DamageDestroy

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-5574

镜像层: sha256:fb39b6eea01e7727fc95f87a81dfa9a7ae14e7cb91262800a6c12e32cf30bd58

发布日期: 2023-10-25 20:15 修改: 2026-06-23 18:17

zlib1g CVE-2026-27171 低危 1:1.3.dfsg-3.1ubuntu2.1 zlib: zlib: Denial of Service via infinite loop in CRC32 combine functions

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-27171

镜像层: sha256:8901a649dd5a9284fa6206a08f3ba3b5a12fddbfd2f82c880e68cdb699d98bfb

发布日期: 2026-02-18 04:16 修改: 2026-06-17 10:26

Node.js (node-pkg)
低危漏洞:9 中危漏洞:42 高危漏洞:32 严重漏洞:2
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
sha.js CVE-2025-9288 严重 2.4.11 2.4.12 sha.js: Missing type checks leading to hash rewind and passing on crafted data

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-9288

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2025-08-20 22:15 修改: 2026-06-17 10:08

shell-quote CVE-2026-9277 严重 1.8.2 1.8.4 shell-quote: shell-quote: Arbitrary code execution via command injection due to unescaped line terminators

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9277

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-05-22 14:16 修改: 2026-06-17 11:05

cross-spawn CVE-2024-21538 高危 5.1.0 7.0.5, 6.0.6 cross-spawn: regular expression denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-21538

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2024-11-08 05:15 修改: 2026-06-17 07:09

fast-uri CVE-2026-6321 高危 3.0.3 3.1.1 fast-uri: fast-uri: Path traversal vulnerability allows bypass of security policies

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-6321

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-05-04 20:16 修改: 2026-06-17 11:00

fast-uri CVE-2026-6322 高危 3.0.3 3.1.2 fast-uri: fast-uri: URI authority bypass due to improper delimiter handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-6322

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-05-05 11:16 修改: 2026-06-17 11:00

flatted CVE-2026-32141 高危 3.3.2 3.4.0 flatted: flatted: Unbounded recursion DoS in parse() revive phase

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-32141

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-03-12 18:16 修改: 2026-06-17 10:35

flatted CVE-2026-33228 高危 3.3.2 3.4.2 flatted: Flatted: Prototype pollution vulnerability allows arbitrary code execution via crafted JSON.

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-33228

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-03-20 23:16 修改: 2026-06-17 10:37

git-clone CVE-2022-25900 高危 0.1.0 Command injection in git-clone

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-25900

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2022-07-01 20:15 修改: 2026-06-17 04:34

http-cache-semantics CVE-2022-25881 高危 3.8.1 4.1.1 http-cache-semantics: Regular Expression Denial of Service (ReDoS) vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-25881

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2023-01-31 05:15 修改: 2026-06-17 04:34

immutable CVE-2026-29063 高危 4.3.7 4.3.8, 5.1.5, 3.8.3 immutable-js: Immutable.js: Arbitrary code execution via Prototype Pollution

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-29063

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-03-06 19:16 修改: 2026-06-17 10:29

lodash CVE-2026-4800 高危 4.17.21 4.18.0 lodash: lodash: Arbitrary code execution via untrusted input in template imports

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-4800

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-03-31 20:16 修改: 2026-06-17 10:57

minimatch CVE-2026-26996 高危 3.1.2 10.2.1, 9.0.6, 8.0.5, 7.4.7, 6.2.1, 5.1.7, 4.2.4, 3.1.3 minimatch: minimatch: Denial of Service via specially crafted glob patterns

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-26996

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-02-20 03:16 修改: 2026-06-17 10:26

minimatch CVE-2026-27903 高危 3.1.2 10.2.3, 9.0.7, 8.0.6, 7.4.8, 6.2.2, 5.1.8, 4.2.5, 3.1.3 minimatch: minimatch: Denial of Service due to unbounded recursive backtracking via crafted glob patterns

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-27903

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-02-26 02:16 修改: 2026-06-17 10:27

minimatch CVE-2026-27904 高危 3.1.2 10.2.3, 9.0.7, 8.0.6, 7.4.8, 6.2.2, 5.1.8, 4.2.5, 3.1.4 minimatch: Minimatch: Denial of Service via catastrophic backtracking in glob expressions

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-27904

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-02-26 02:16 修改: 2026-06-17 10:27

minimatch CVE-2026-26996 高危 5.1.6 10.2.1, 9.0.6, 8.0.5, 7.4.7, 6.2.1, 5.1.7, 4.2.4, 3.1.3 minimatch: minimatch: Denial of Service via specially crafted glob patterns

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-26996

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-02-20 03:16 修改: 2026-06-17 10:26

minimatch CVE-2026-27903 高危 5.1.6 10.2.3, 9.0.7, 8.0.6, 7.4.8, 6.2.2, 5.1.8, 4.2.5, 3.1.3 minimatch: minimatch: Denial of Service due to unbounded recursive backtracking via crafted glob patterns

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-27903

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-02-26 02:16 修改: 2026-06-17 10:27

minimatch CVE-2026-27904 高危 5.1.6 10.2.3, 9.0.7, 8.0.6, 7.4.8, 6.2.2, 5.1.8, 4.2.5, 3.1.4 minimatch: Minimatch: Denial of Service via catastrophic backtracking in glob expressions

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-27904

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-02-26 02:16 修改: 2026-06-17 10:27

node-forge CVE-2025-12816 高危 1.3.1 1.3.2 node-forge: node-forge: Interpretation conflict vulnerability allows bypassing cryptographic verifications

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-12816

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2025-11-25 20:15 修改: 2026-06-17 08:32

node-forge CVE-2025-66031 高危 1.3.1 1.3.2 node-forge: node-forge ASN.1 Unbounded Recursion

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-66031

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2025-11-26 23:15 修改: 2026-06-17 09:56

node-forge CVE-2026-33891 高危 1.3.1 1.4.0 node-forge: node-forge: Denial of Service via infinite loop in BigInteger.modInverse()

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-33891

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-03-27 21:17 修改: 2026-06-17 10:38

node-forge CVE-2026-33894 高危 1.3.1 1.4.0 node-forge: Forge: Signature Forgery via Weak RSASSA PKCS#1 v1.5 Verification

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-33894

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-03-27 21:17 修改: 2026-06-17 10:38

node-forge CVE-2026-33895 高危 1.3.1 1.4.0 node-forge: Forge: Authentication bypass via forged Ed25519 cryptographic signatures

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-33895

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-03-27 21:17 修改: 2026-06-17 10:38

node-forge CVE-2026-33896 高危 1.3.1 1.4.0 node-forge: Forge (node-forge): Certificate validation bypass allows unauthorized certificate issuance

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-33896

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-03-27 21:17 修改: 2026-06-17 10:38

parse-git-config CVE-2025-25975 高危 3.0.0 parse-git-config: Prototype Pollution Vulneralbility in parse-git-config

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-25975

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2025-03-12 19:15 修改: 2026-06-17 09:01

path-to-regexp CVE-2026-4867 高危 0.1.12 0.1.13 path-to-regexp: path-to-regexp: Denial of Service via catastrophic backtracking from malformed URL parameters

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-4867

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-03-26 17:16 修改: 2026-06-17 10:57

picomatch CVE-2026-33671 高危 2.3.1 4.0.4, 3.0.2, 2.3.2 picomatch: Picomatch: Regular Expression Denial of Service via crafted extglob patterns

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-33671

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-03-26 22:16 修改: 2026-06-17 10:37

serialize-javascript GHSA-5c6j-r48x-rmvq 高危 6.0.2 7.0.3 Serialize JavaScript is Vulnerable to RCE via RegExp.flags and Date.prototype.toISOString()

漏洞详情: https://github.com/advisories/GHSA-5c6j-r48x-rmvq

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-02-28 02:50 修改: 2026-03-02 16:17

@babel/plugin-transform-modules-systemjs CVE-2026-44728 高危 7.25.9 7.29.4, 8.0.0-alpha.13 Babel is a compiler for writing next generation JavaScript. From 7.12. ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-44728

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-05-26 18:16 修改: 2026-06-17 10:51

braces CVE-2024-4068 高危 2.3.2 3.0.3 braces: fails to limit the number of characters it can handle

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-4068

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2024-05-14 15:42 修改: 2026-06-17 08:01

svgo CVE-2026-29074 高危 2.8.0 2.8.1, 3.3.3, 4.0.1 svgo: SVGO: Denial of Service via XML entity expansion

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-29074

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-03-06 08:16 修改: 2026-06-17 10:29

tmp CVE-2026-44705 高危 0.0.33 0.2.6 tmp is a temporary file and directory creator for node.js. Prior to 0. ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-44705

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-06-11 17:16 修改: 2026-06-17 10:51

vuetify CVE-2025-8083 高危 2.7.2 3.0.0-alpha.10 Vuetify has a Prototype Pollution vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-8083

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2025-12-12 20:15 修改: 2026-06-17 10:06

ws CVE-2026-48779 高危 7.5.10 5.2.5, 6.2.4, 7.5.11, 8.21.0 ws: ws: Denial of Service via memory exhaustion from small WebSocket fragments

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-48779

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-06-17 13:20 修改: 2026-06-18 15:25

ws CVE-2026-48779 高危 8.18.0 5.2.5, 6.2.4, 7.5.11, 8.21.0 ws: ws: Denial of Service via memory exhaustion from small WebSocket fragments

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-48779

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-06-17 13:20 修改: 2026-06-18 15:25

ajv CVE-2025-69873 中危 6.12.6 8.18.0, 6.14.0 ajv: ReDoS via $data reference

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69873

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-02-11 19:15 修改: 2026-06-17 10:00

ajv CVE-2025-69873 中危 8.17.1 8.18.0, 6.14.0 ajv: ReDoS via $data reference

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69873

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-02-11 19:15 修改: 2026-06-17 10:00

apollo-server-core GHSA-9q82-xgwf-vj6h 中危 3.13.0 Apollo Server: Browser bug allows for bypass of XS-Search (read-only Cross-Site Request Forgery) prevention

漏洞详情: https://github.com/advisories/GHSA-9q82-xgwf-vj6h

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-03-26 21:53 修改: 2026-03-26 21:53

follow-redirects GHSA-r4q5-vmmm-2653 中危 1.15.9 1.16.0 follow-redirects leaks Custom Authentication Headers to Cross-Domain Redirect Targets

漏洞详情: https://github.com/advisories/GHSA-r4q5-vmmm-2653

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-04-14 01:11 修改: 2026-04-14 01:11

brace-expansion CVE-2026-33750 中危 1.1.11 5.0.5, 3.0.2, 2.0.3, 1.1.13 brace-expansion: brace-expansion: Denial of Service via zero step value in brace pattern

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-33750

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-03-27 15:16 修改: 2026-06-17 10:38

nanoid CVE-2024-55565 中危 2.1.11 5.0.9, 3.3.8 nanoid: nanoid mishandles non-integer values

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-55565

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2024-12-09 02:15 修改: 2026-06-17 08:11

got CVE-2022-33987 中危 8.3.2 12.1.0, 11.8.5 nodejs-got: missing verification of requested URLs allows redirects to UNIX sockets

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-33987

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2022-06-18 21:15 修改: 2026-06-17 04:49

brace-expansion CVE-2026-33750 中危 2.0.1 5.0.5, 3.0.2, 2.0.3, 1.1.13 brace-expansion: brace-expansion: Denial of Service via zero step value in brace pattern

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-33750

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-03-27 15:16 修改: 2026-06-17 10:38

http-proxy-middleware CVE-2025-32996 中危 2.0.7 2.0.8, 3.0.4 http-proxy-middleware: Always-Incorrect Control Flow Implementation in http-proxy-middleware

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-32996

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2025-04-15 03:15 修改: 2026-06-17 09:12

http-proxy-middleware CVE-2025-32997 中危 2.0.7 2.0.9, 3.0.5 http-proxy-middleware: Improper Check for Unusual or Exceptional Conditions in http-proxy-middleware

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-32997

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2025-04-15 03:15 修改: 2026-06-17 09:12

http-proxy-middleware CVE-2026-55602 中危 2.0.7 3.0.6, 4.1.0, 2.0.10 http-proxy-middleware: http-proxy-middleware: Unintended backend routing due to crafted Host header

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-55602

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-06-22 18:16 修改: 2026-06-23 15:50

@babel/helpers CVE-2025-27789 中危 7.26.0 7.26.10, 8.0.0-alpha.17 Babel has inefficient RegExp complexity in generated code with .replace when transpiling named capturing groups

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-27789

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2025-03-11 20:15 修改: 2026-06-17 09:04

node-forge CVE-2025-66030 中危 1.3.1 1.3.2 node-forge: node-forge: Integer Overflow allows OID-based security bypass

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-66030

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2025-11-26 23:15 修改: 2026-06-17 09:56

joi CVE-2026-48038 中危 17.13.3 18.2.1, 17.13.4 joi has an uncaught RangeError on deeply nested input through recursive `link()` schemas

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-48038

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

js-yaml CVE-2025-64718 中危 3.14.1 4.1.1, 3.14.2 js-yaml: js-yaml prototype pollution in merge

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-64718

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2025-11-13 16:15 修改: 2026-06-17 09:55

js-yaml CVE-2026-53550 中危 3.14.1 4.2.0 js-yaml is a JavaScript YAML parser and dumper. Prior to 4.2.0, a craf ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-53550

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-06-22 16:16 修改: 2026-06-23 17:17

picomatch CVE-2026-33672 中危 2.3.1 4.0.4, 3.0.2, 2.3.2 picomatch: Picomatch: Data integrity compromised via method injection with crafted POSIX bracket expressions

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-33672

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-03-26 22:16 修改: 2026-06-17 10:37

postcss CVE-2023-44270 中危 7.0.39 8.4.31 PostCSS: Improper input validation in PostCSS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-44270

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2023-09-29 22:15 修改: 2026-06-17 06:27

postcss CVE-2026-41305 中危 7.0.39 8.5.10 postcss: PostCSS: Cross-Site Scripting (XSS) via improper escaping of style closing tags

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-41305

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-04-24 03:16 修改: 2026-06-17 10:46

postcss CVE-2026-41305 中危 8.4.49 8.5.10 postcss: PostCSS: Cross-Site Scripting (XSS) via improper escaping of style closing tags

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-41305

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-04-24 03:16 修改: 2026-06-17 10:46

prismjs CVE-2024-53382 中危 1.29.0 1.30.0 prismjs: DOM Clobbering vulnerability within the Prism library's prism-autoloader plugin

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-53382

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2025-03-03 07:15 修改: 2026-06-17 08:08

qs CVE-2025-15284 中危 6.13.0 6.14.1 qs: qs: Denial of Service via improper input validation in array parsing

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-15284

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2025-12-29 23:15 修改: 2026-06-17 08:37

qs CVE-2026-8723 中危 6.13.0 6.15.2 ### Summary `qs.stringify` throws `TypeError` when called with `arr ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-8723

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-05-17 00:16 修改: 2026-06-17 11:04

js-yaml CVE-2025-64718 中危 4.1.0 4.1.1, 3.14.2 js-yaml: js-yaml prototype pollution in merge

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-64718

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2025-11-13 16:15 修改: 2026-06-17 09:55

serialize-javascript CVE-2026-34043 中危 6.0.2 7.0.5 serialize-javascript: serialize-javascript: Denial of Service via specially crafted array-like object serialization

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-34043

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-03-31 03:15 修改: 2026-06-17 10:38

js-yaml CVE-2026-53550 中危 4.1.0 4.2.0 js-yaml is a JavaScript YAML parser and dumper. Prior to 4.2.0, a craf ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-53550

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-06-22 16:16 修改: 2026-06-23 17:17

launch-editor CVE-2026-53632 中危 2.9.1 2.14.1 launch-editor: NTLMv2 hash disclosure via UNC path handling on Windows

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-53632

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-06-22 18:16 修改: 2026-06-23 15:44

@babel/runtime CVE-2025-27789 中危 7.26.0 7.26.10, 8.0.0-alpha.17 Babel has inefficient RegExp complexity in generated code with .replace when transpiling named capturing groups

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-27789

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2025-03-11 20:15 修改: 2026-06-17 09:04

lodash CVE-2025-13465 中危 4.17.21 4.17.23 lodash: prototype pollution in _.unset and _.omit functions

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-13465

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-01-21 20:16 修改: 2026-06-17 08:34

uuid CVE-2026-41907 中危 8.3.2 11.1.1, 12.0.1, 13.0.1 uuid: uuid: Out-of-bounds write vulnerability impacts data integrity and confidentiality

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-41907

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-04-24 19:17 修改: 2026-06-17 10:47

uuid CVE-2026-41907 中危 9.0.1 11.1.1, 12.0.1, 13.0.1 uuid: uuid: Out-of-bounds write vulnerability impacts data integrity and confidentiality

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-41907

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-04-24 19:17 修改: 2026-06-17 10:47

vue-template-compiler CVE-2024-6783 中危 2.7.16 3.0.0 vue-template-compiler vulnerable to client-side Cross-Site Scripting (XSS)

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6783

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2024-07-23 15:15 修改: 2026-06-17 08:18

lodash CVE-2026-2950 中危 4.17.21 4.18.0 lodash: Lodash: Prototype pollution allows deletion of built-in prototype properties via array path bypass

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-2950

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-03-31 20:16 修改: 2026-06-17 10:32

vuetify CVE-2025-8082 中危 2.7.2 3.0.0 Vuetify: Vuetify: Cross-Site Scripting (XSS) vulnerability in VDatePicker component

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-8082

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2025-12-12 19:16 修改: 2026-06-17 10:06

webpack-dev-server CVE-2025-30359 中危 4.15.2 5.2.1 webpack-dev-server: webpack-dev-server information exposure

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-30359

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2025-06-03 18:15 修改: 2026-06-17 09:08

webpack-dev-server CVE-2025-30360 中危 4.15.2 5.2.1 webpack-dev-server: webpack-dev-server information exposure

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-30360

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2025-06-03 18:15 修改: 2026-06-17 09:08

webpack-dev-server CVE-2026-6402 中危 4.15.2 5.2.4 webpack-dev-server: webpack-dev-server: Information disclosure due to cross-origin source code exposure

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-6402

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-05-12 09:16 修改: 2026-06-17 11:00

webpack-dev-server CVE-2026-9595 中危 4.15.2 5.2.5 webpack-dev-server vulnerable to HMR WebSocket interception via permissive user proxies

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9595

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-06-15 16:16 修改: 2026-06-17 11:05

micromatch CVE-2024-4067 中危 3.1.10 4.0.8 micromatch: vulnerable to Regular Expression Denial of Service

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-4067

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2024-05-14 15:42 修改: 2026-06-17 08:01

@protobufjs/utf8 CVE-2026-44288 中危 1.1.0 1.1.1 protobufjs: protobufjs: Security control bypass due to improper handling of overlong UTF-8 sequences

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-44288

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-05-13 16:16 修改: 2026-06-17 10:50

ws CVE-2026-45736 中危 8.18.0 8.20.1 ws: ws: Uninitialized memory disclosure via `websocket.close()` with `TypedArray`

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-45736

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-05-15 15:16 修改: 2026-06-17 10:52

yaml CVE-2026-33532 中危 1.10.2 2.8.3, 1.10.3 yaml: yaml: Denial of Service via deeply nested YAML document parsing

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-33532

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-03-26 20:16 修改: 2026-06-17 10:37

webpack CVE-2025-68458 低危 5.97.1 5.104.1 webpack: webpack buildHttp: allowedUris allow-list bypass via URL userinfo (@) leading to build-time SSRF behavior

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-68458

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-02-05 23:15 修改: 2026-06-17 09:59

tmp CVE-2025-54798 低危 0.0.33 0.2.4 tmp: tmp Symbolic Link Write Vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-54798

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2025-08-07 01:15 修改: 2026-06-17 09:40

on-headers CVE-2025-7339 低危 1.0.2 1.1.0 on-headers: on-headers vulnerable to http response header manipulation

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-7339

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2025-07-17 16:15 修改: 2026-06-17 10:04

brace-expansion CVE-2025-5889 低危 2.0.1 2.0.2, 1.1.12, 3.0.1, 4.0.1 brace-expansion: juliangruber brace-expansion index.js expand redos

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-5889

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2025-06-09 19:15 修改: 2026-06-17 09:48

vue CVE-2024-9506 低危 2.7.16 3.0.0-alpha.0 vue: Regular Expression Denial of Service (ReDoS)

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-9506

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2024-10-15 16:15 修改: 2026-06-17 08:24

brace-expansion CVE-2025-5889 低危 1.1.11 2.0.2, 1.1.12, 3.0.1, 4.0.1 brace-expansion: juliangruber brace-expansion index.js expand redos

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-5889

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2025-06-09 19:15 修改: 2026-06-17 09:48

qs CVE-2026-2391 低危 6.13.0 6.14.2 qs: qs's arrayLimit bypass in comma parsing allows denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-2391

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-02-12 05:17 修改: 2026-06-17 10:30

@babel/core CVE-2026-49356 低危 7.26.0 8.0.0-rc.6, 7.29.6 Babel is a compiler for writing next generation JavaScript. Prior to 8 ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-49356

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-06-22 18:16 修改: 2026-06-23 16:04

webpack CVE-2025-68157 低危 5.97.1 5.104.0 webpack: webpack buildHttp HttpUriPlugin allowedUris bypass via HTTP redirects

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-68157

镜像层: sha256:872c3f50e044ac32b9b7304e78b89bdfc997df7aebd9b376b394684768ab4741

发布日期: 2026-02-05 23:15 修改: 2026-06-17 09:58

Python (python-pkg)
低危漏洞:2 中危漏洞:0 高危漏洞:0 严重漏洞:0
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
GDAL CVE-2026-8087 低危 3.11.0 3.13.0 A security flaw has been discovered in OSGeo gdal up to 3.13.0dev-4. I ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-8087

镜像层: sha256:0f62aeea097c96579cc06a74bc7b30e9b148215c86159015e89c07cb5fcd6e90

发布日期: 2026-05-07 20:16 修改: 2026-06-17 11:03

GDAL CVE-2026-8088 低危 3.11.0 3.13.0 A weakness has been identified in OSGeo gdal up to 3.13.0dev-4. The af ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-8088

镜像层: sha256:0f62aeea097c96579cc06a74bc7b30e9b148215c86159015e89c07cb5fcd6e90

发布日期: 2026-05-07 20:16 修改: 2026-06-17 11:03

检测到您正在使用广告拦截插件,本站为公益站点,依赖广告维持运转 🙏 查看如何关闭 ×