docker.io/cym1102/nginxwebui:4.3.8 linux/amd64

docker.io/cym1102/nginxwebui:4.3.8 - Trivy安全扫描结果 扫描时间: 2026-06-09 14:23
全部漏洞信息
低危漏洞:1 中危漏洞:22 高危漏洞:70 严重漏洞:2

系统OS: alpine 3.23.4 扫描引擎: Trivy 扫描时间: 2026-06-09 14:23

docker.io/cym1102/nginxwebui:4.3.8 (alpine 3.23.4) (alpine)
低危漏洞:0 中危漏洞:18 高危漏洞:65 严重漏洞:0
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
libxml2 CVE-2026-6732 高危 2.13.9-r0 2.13.9-r1 libxml2: libxml2: Denial of Service via crafted XSD-validated document

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-6732

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-04-23 23:16 修改: 2026-05-15 14:36

nginx CVE-2026-49975 高危 1.28.3-r1 1.28.3-r3 httpd: HTTP/2: Remote Denial of Service via compression bomb and Slowloris-style attack

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-49975

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-06-08 16:16 修改: 2026-06-08 23:17

nginx CVE-2026-9256 高危 1.28.3-r1 1.28.3-r2 nginx: ngx_http_rewrite_module: code execution and denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9256

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

nginx-mod-devel-kit CVE-2026-49975 高危 1.28.3-r1 1.28.3-r3 httpd: HTTP/2: Remote Denial of Service via compression bomb and Slowloris-style attack

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-49975

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-06-08 16:16 修改: 2026-06-08 23:17

nginx-mod-devel-kit CVE-2026-9256 高危 1.28.3-r1 1.28.3-r2 nginx: ngx_http_rewrite_module: code execution and denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9256

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

nginx-mod-dynamic-healthcheck CVE-2026-49975 高危 1.28.3-r1 1.28.3-r3 httpd: HTTP/2: Remote Denial of Service via compression bomb and Slowloris-style attack

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-49975

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-06-08 16:16 修改: 2026-06-08 23:17

nginx-mod-dynamic-healthcheck CVE-2026-9256 高危 1.28.3-r1 1.28.3-r2 nginx: ngx_http_rewrite_module: code execution and denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9256

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

nginx-mod-dynamic-upstream CVE-2026-49975 高危 1.28.3-r1 1.28.3-r3 httpd: HTTP/2: Remote Denial of Service via compression bomb and Slowloris-style attack

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-49975

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-06-08 16:16 修改: 2026-06-08 23:17

nginx-mod-dynamic-upstream CVE-2026-9256 高危 1.28.3-r1 1.28.3-r2 nginx: ngx_http_rewrite_module: code execution and denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9256

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

nginx-mod-http-brotli CVE-2026-49975 高危 1.28.3-r1 1.28.3-r3 httpd: HTTP/2: Remote Denial of Service via compression bomb and Slowloris-style attack

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-49975

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-06-08 16:16 修改: 2026-06-08 23:17

nginx-mod-http-brotli CVE-2026-9256 高危 1.28.3-r1 1.28.3-r2 nginx: ngx_http_rewrite_module: code execution and denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9256

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

nginx-mod-http-cache-purge CVE-2026-49975 高危 1.28.3-r1 1.28.3-r3 httpd: HTTP/2: Remote Denial of Service via compression bomb and Slowloris-style attack

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-49975

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-06-08 16:16 修改: 2026-06-08 23:17

nginx-mod-http-cache-purge CVE-2026-9256 高危 1.28.3-r1 1.28.3-r2 nginx: ngx_http_rewrite_module: code execution and denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9256

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

nginx-mod-http-echo CVE-2026-49975 高危 1.28.3-r1 1.28.3-r3 httpd: HTTP/2: Remote Denial of Service via compression bomb and Slowloris-style attack

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-49975

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-06-08 16:16 修改: 2026-06-08 23:17

nginx-mod-http-echo CVE-2026-9256 高危 1.28.3-r1 1.28.3-r2 nginx: ngx_http_rewrite_module: code execution and denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9256

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

nginx-mod-http-geoip CVE-2026-49975 高危 1.28.3-r1 1.28.3-r3 httpd: HTTP/2: Remote Denial of Service via compression bomb and Slowloris-style attack

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-49975

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-06-08 16:16 修改: 2026-06-08 23:17

nginx-mod-http-geoip CVE-2026-9256 高危 1.28.3-r1 1.28.3-r2 nginx: ngx_http_rewrite_module: code execution and denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9256

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

nginx-mod-http-geoip2 CVE-2026-49975 高危 1.28.3-r1 1.28.3-r3 httpd: HTTP/2: Remote Denial of Service via compression bomb and Slowloris-style attack

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-49975

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-06-08 16:16 修改: 2026-06-08 23:17

nginx-mod-http-geoip2 CVE-2026-9256 高危 1.28.3-r1 1.28.3-r2 nginx: ngx_http_rewrite_module: code execution and denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9256

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

nginx-mod-http-headers-more CVE-2026-49975 高危 1.28.3-r1 1.28.3-r3 httpd: HTTP/2: Remote Denial of Service via compression bomb and Slowloris-style attack

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-49975

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-06-08 16:16 修改: 2026-06-08 23:17

nginx-mod-http-headers-more CVE-2026-9256 高危 1.28.3-r1 1.28.3-r2 nginx: ngx_http_rewrite_module: code execution and denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9256

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

nginx-mod-http-js CVE-2026-49975 高危 1.28.3-r1 1.28.3-r3 httpd: HTTP/2: Remote Denial of Service via compression bomb and Slowloris-style attack

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-49975

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-06-08 16:16 修改: 2026-06-08 23:17

nginx-mod-http-js CVE-2026-9256 高危 1.28.3-r1 1.28.3-r2 nginx: ngx_http_rewrite_module: code execution and denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9256

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

nginx-mod-http-keyval CVE-2026-49975 高危 1.28.3-r1 1.28.3-r3 httpd: HTTP/2: Remote Denial of Service via compression bomb and Slowloris-style attack

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-49975

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-06-08 16:16 修改: 2026-06-08 23:17

nginx-mod-http-keyval CVE-2026-9256 高危 1.28.3-r1 1.28.3-r2 nginx: ngx_http_rewrite_module: code execution and denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9256

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

nginx-mod-http-lua CVE-2026-49975 高危 1.28.3-r1 1.28.3-r3 httpd: HTTP/2: Remote Denial of Service via compression bomb and Slowloris-style attack

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-49975

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-06-08 16:16 修改: 2026-06-08 23:17

nginx-mod-http-lua CVE-2026-9256 高危 1.28.3-r1 1.28.3-r2 nginx: ngx_http_rewrite_module: code execution and denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9256

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

nginx-mod-http-perl CVE-2026-49975 高危 1.28.3-r1 1.28.3-r3 httpd: HTTP/2: Remote Denial of Service via compression bomb and Slowloris-style attack

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-49975

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-06-08 16:16 修改: 2026-06-08 23:17

nginx-mod-http-perl CVE-2026-9256 高危 1.28.3-r1 1.28.3-r2 nginx: ngx_http_rewrite_module: code execution and denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9256

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

nginx-mod-http-upload CVE-2026-49975 高危 1.28.3-r1 1.28.3-r3 httpd: HTTP/2: Remote Denial of Service via compression bomb and Slowloris-style attack

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-49975

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-06-08 16:16 修改: 2026-06-08 23:17

nginx-mod-http-upload CVE-2026-9256 高危 1.28.3-r1 1.28.3-r2 nginx: ngx_http_rewrite_module: code execution and denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9256

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

nginx-mod-http-upload-progress CVE-2026-49975 高危 1.28.3-r1 1.28.3-r3 httpd: HTTP/2: Remote Denial of Service via compression bomb and Slowloris-style attack

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-49975

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-06-08 16:16 修改: 2026-06-08 23:17

nginx-mod-http-upload-progress CVE-2026-9256 高危 1.28.3-r1 1.28.3-r2 nginx: ngx_http_rewrite_module: code execution and denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9256

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

nginx-mod-http-upstream-fair CVE-2026-49975 高危 1.28.3-r1 1.28.3-r3 httpd: HTTP/2: Remote Denial of Service via compression bomb and Slowloris-style attack

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-49975

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-06-08 16:16 修改: 2026-06-08 23:17

nginx-mod-http-upstream-fair CVE-2026-9256 高危 1.28.3-r1 1.28.3-r2 nginx: ngx_http_rewrite_module: code execution and denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9256

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

nginx-mod-http-zip CVE-2026-49975 高危 1.28.3-r1 1.28.3-r3 httpd: HTTP/2: Remote Denial of Service via compression bomb and Slowloris-style attack

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-49975

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-06-08 16:16 修改: 2026-06-08 23:17

nginx-mod-http-zip CVE-2026-9256 高危 1.28.3-r1 1.28.3-r2 nginx: ngx_http_rewrite_module: code execution and denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9256

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

nginx-mod-http-zstd CVE-2026-49975 高危 1.28.3-r1 1.28.3-r3 httpd: HTTP/2: Remote Denial of Service via compression bomb and Slowloris-style attack

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-49975

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-06-08 16:16 修改: 2026-06-08 23:17

nginx-mod-http-zstd CVE-2026-9256 高危 1.28.3-r1 1.28.3-r2 nginx: ngx_http_rewrite_module: code execution and denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9256

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

nginx-mod-mail CVE-2026-49975 高危 1.28.3-r1 1.28.3-r3 httpd: HTTP/2: Remote Denial of Service via compression bomb and Slowloris-style attack

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-49975

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-06-08 16:16 修改: 2026-06-08 23:17

nginx-mod-mail CVE-2026-9256 高危 1.28.3-r1 1.28.3-r2 nginx: ngx_http_rewrite_module: code execution and denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9256

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

nginx-mod-rtmp CVE-2026-49975 高危 1.28.3-r1 1.28.3-r3 httpd: HTTP/2: Remote Denial of Service via compression bomb and Slowloris-style attack

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-49975

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-06-08 16:16 修改: 2026-06-08 23:17

nginx-mod-rtmp CVE-2026-9256 高危 1.28.3-r1 1.28.3-r2 nginx: ngx_http_rewrite_module: code execution and denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9256

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

nginx-mod-stream CVE-2026-49975 高危 1.28.3-r1 1.28.3-r3 httpd: HTTP/2: Remote Denial of Service via compression bomb and Slowloris-style attack

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-49975

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-06-08 16:16 修改: 2026-06-08 23:17

nginx-mod-stream CVE-2026-9256 高危 1.28.3-r1 1.28.3-r2 nginx: ngx_http_rewrite_module: code execution and denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9256

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

nginx-mod-stream-geoip CVE-2026-49975 高危 1.28.3-r1 1.28.3-r3 httpd: HTTP/2: Remote Denial of Service via compression bomb and Slowloris-style attack

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-49975

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-06-08 16:16 修改: 2026-06-08 23:17

nginx-mod-stream-geoip CVE-2026-9256 高危 1.28.3-r1 1.28.3-r2 nginx: ngx_http_rewrite_module: code execution and denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9256

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

nginx-mod-stream-geoip2 CVE-2026-49975 高危 1.28.3-r1 1.28.3-r3 httpd: HTTP/2: Remote Denial of Service via compression bomb and Slowloris-style attack

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-49975

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-06-08 16:16 修改: 2026-06-08 23:17

nginx-mod-stream-geoip2 CVE-2026-9256 高危 1.28.3-r1 1.28.3-r2 nginx: ngx_http_rewrite_module: code execution and denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9256

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

nginx-mod-stream-js CVE-2026-49975 高危 1.28.3-r1 1.28.3-r3 httpd: HTTP/2: Remote Denial of Service via compression bomb and Slowloris-style attack

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-49975

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-06-08 16:16 修改: 2026-06-08 23:17

nginx-mod-stream-js CVE-2026-9256 高危 1.28.3-r1 1.28.3-r2 nginx: ngx_http_rewrite_module: code execution and denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9256

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

nginx-mod-stream-keyval CVE-2026-49975 高危 1.28.3-r1 1.28.3-r3 httpd: HTTP/2: Remote Denial of Service via compression bomb and Slowloris-style attack

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-49975

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-06-08 16:16 修改: 2026-06-08 23:17

nginx-mod-stream-keyval CVE-2026-9256 高危 1.28.3-r1 1.28.3-r2 nginx: ngx_http_rewrite_module: code execution and denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9256

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

openjdk8-jre CVE-2025-30749 高危 8.452.09-r0 8.472.08-r0 openjdk: Better Glyph drawing (Oracle CPU 2025-07)

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-30749

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2025-07-15 20:15 修改: 2025-11-03 20:18

openjdk8-jre CVE-2025-50106 高危 8.452.09-r0 8.472.08-r0 openjdk: Glyph out-of-memory access and crash (Oracle CPU 2025-07)

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-50106

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2025-07-15 20:15 修改: 2025-11-03 20:19

openjdk8-jre CVE-2026-21932 高危 8.452.09-r0 8.482.08-r0 openjdk: Enhance Handling of URIs (Oracle CPU 2026-01)

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-21932

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-01-20 22:15 修改: 2026-05-12 13:17

openjdk8-jre CVE-2026-21945 高危 8.452.09-r0 8.482.08-r0 openjdk: Enhance Certificate Checking (Oracle CPU 2026-01)

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-21945

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-01-20 22:15 修改: 2026-05-12 13:17

openjdk8-jre-base CVE-2025-30749 高危 8.452.09-r0 8.472.08-r0 openjdk: Better Glyph drawing (Oracle CPU 2025-07)

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-30749

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2025-07-15 20:15 修改: 2025-11-03 20:18

openjdk8-jre-base CVE-2025-50106 高危 8.452.09-r0 8.472.08-r0 openjdk: Glyph out-of-memory access and crash (Oracle CPU 2025-07)

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-50106

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2025-07-15 20:15 修改: 2025-11-03 20:19

openjdk8-jre-base CVE-2026-21932 高危 8.452.09-r0 8.482.08-r0 openjdk: Enhance Handling of URIs (Oracle CPU 2026-01)

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-21932

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-01-20 22:15 修改: 2026-05-12 13:17

openjdk8-jre-base CVE-2026-21945 高危 8.452.09-r0 8.482.08-r0 openjdk: Enhance Certificate Checking (Oracle CPU 2026-01)

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-21945

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-01-20 22:15 修改: 2026-05-12 13:17

openjdk8-jre-lib CVE-2025-30749 高危 8.452.09-r0 8.472.08-r0 openjdk: Better Glyph drawing (Oracle CPU 2025-07)

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-30749

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2025-07-15 20:15 修改: 2025-11-03 20:18

openjdk8-jre-lib CVE-2025-50106 高危 8.452.09-r0 8.472.08-r0 openjdk: Glyph out-of-memory access and crash (Oracle CPU 2025-07)

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-50106

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2025-07-15 20:15 修改: 2025-11-03 20:19

openjdk8-jre-lib CVE-2026-21932 高危 8.452.09-r0 8.482.08-r0 openjdk: Enhance Handling of URIs (Oracle CPU 2026-01)

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-21932

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-01-20 22:15 修改: 2026-05-12 13:17

openjdk8-jre-lib CVE-2026-21945 高危 8.452.09-r0 8.482.08-r0 openjdk: Enhance Certificate Checking (Oracle CPU 2026-01)

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-21945

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-01-20 22:15 修改: 2026-05-12 13:17

openjdk8-jre CVE-2025-53057 中危 8.452.09-r0 8.472.08-r0 openjdk: Enhance certificate handling (Oracle CPU 2025-10)

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-53057

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2025-10-21 20:20 修改: 2026-05-12 13:17

openjdk8-jre CVE-2025-53066 中危 8.452.09-r0 8.472.08-r0 openjdk: Enhance Path Factories (Oracle CPU 2025-10)

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-53066

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2025-10-21 20:20 修改: 2026-05-12 13:17

openjdk8-jre-base CVE-2025-30754 中危 8.452.09-r0 8.472.08-r0 openjdk: Enhance TLS protocol support (Oracle CPU 2025-07)

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-30754

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2025-07-15 20:15 修改: 2025-11-03 20:18

openjdk8-jre-base CVE-2025-30761 中危 8.452.09-r0 8.472.08-r0 openjdk: Improve scripting supports (Oracle CPU 2025-07)

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-30761

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2025-07-15 21:15 修改: 2025-11-04 22:16

openjdk8-jre-base CVE-2025-53057 中危 8.452.09-r0 8.472.08-r0 openjdk: Enhance certificate handling (Oracle CPU 2025-10)

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-53057

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2025-10-21 20:20 修改: 2026-05-12 13:17

openjdk8-jre-base CVE-2025-53066 中危 8.452.09-r0 8.472.08-r0 openjdk: Enhance Path Factories (Oracle CPU 2025-10)

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-53066

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2025-10-21 20:20 修改: 2026-05-12 13:17

openjdk8-jre-base CVE-2026-21925 中危 8.452.09-r0 8.482.08-r0 openjdk: Improve JMX connections (Oracle CPU 2026-01)

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-21925

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-01-20 22:15 修改: 2026-05-12 13:17

openjdk8-jre-base CVE-2026-21933 中危 8.452.09-r0 8.482.08-r0 openjdk: Improve HttpServer Request handling (Oracle CPU 2026-01)

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-21933

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-01-20 22:15 修改: 2026-05-12 13:17

openjdk8-jre CVE-2026-21925 中危 8.452.09-r0 8.482.08-r0 openjdk: Improve JMX connections (Oracle CPU 2026-01)

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-21925

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-01-20 22:15 修改: 2026-05-12 13:17

openjdk8-jre CVE-2026-21933 中危 8.452.09-r0 8.482.08-r0 openjdk: Improve HttpServer Request handling (Oracle CPU 2026-01)

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-21933

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-01-20 22:15 修改: 2026-05-12 13:17

openjdk8-jre CVE-2025-30754 中危 8.452.09-r0 8.472.08-r0 openjdk: Enhance TLS protocol support (Oracle CPU 2025-07)

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-30754

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2025-07-15 20:15 修改: 2025-11-03 20:18

openjdk8-jre CVE-2025-30761 中危 8.452.09-r0 8.472.08-r0 openjdk: Improve scripting supports (Oracle CPU 2025-07)

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-30761

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2025-07-15 21:15 修改: 2025-11-04 22:16

openjdk8-jre-lib CVE-2025-30754 中危 8.452.09-r0 8.472.08-r0 openjdk: Enhance TLS protocol support (Oracle CPU 2025-07)

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-30754

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2025-07-15 20:15 修改: 2025-11-03 20:18

openjdk8-jre-lib CVE-2025-30761 中危 8.452.09-r0 8.472.08-r0 openjdk: Improve scripting supports (Oracle CPU 2025-07)

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-30761

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2025-07-15 21:15 修改: 2025-11-04 22:16

openjdk8-jre-lib CVE-2025-53057 中危 8.452.09-r0 8.472.08-r0 openjdk: Enhance certificate handling (Oracle CPU 2025-10)

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-53057

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2025-10-21 20:20 修改: 2026-05-12 13:17

openjdk8-jre-lib CVE-2025-53066 中危 8.452.09-r0 8.472.08-r0 openjdk: Enhance Path Factories (Oracle CPU 2025-10)

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-53066

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2025-10-21 20:20 修改: 2026-05-12 13:17

openjdk8-jre-lib CVE-2026-21925 中危 8.452.09-r0 8.482.08-r0 openjdk: Improve JMX connections (Oracle CPU 2026-01)

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-21925

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-01-20 22:15 修改: 2026-05-12 13:17

openjdk8-jre-lib CVE-2026-21933 中危 8.452.09-r0 8.482.08-r0 openjdk: Improve HttpServer Request handling (Oracle CPU 2026-01)

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-21933

镜像层: sha256:2695030079cf97ff8a6c1bd3abe22bcbbbc22f388dfc6c51a3a2b3eb78cb2f85

发布日期: 2026-01-20 22:15 修改: 2026-05-12 13:17

Java (jar)
低危漏洞:1 中危漏洞:4 高危漏洞:5 严重漏洞:2
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
io.undertow:undertow-core CVE-2025-12543 严重 2.2.37.Final 2.3.21.Final, 2.2.39.Final undertow-core: Undertow HTTP Server Fails to Reject Malformed Host Headers Leading to Potential Cache Poisoning and SSRF

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-12543

镜像层: sha256:761955f3e95ce69945b51efd33f044b5aaa912569862a5e8da59efe9ee794343

发布日期: 2026-01-07 17:15 修改: 2026-03-18 16:16

org.codehaus.plexus:plexus-utils CVE-2017-1000487 严重 2.0.4 3.0.16 plexus-utils: Mishandled strings in Commandline class allow for command injection

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-1000487

镜像层: sha256:761955f3e95ce69945b51efd33f044b5aaa912569862a5e8da59efe9ee794343

发布日期: 2018-01-03 20:29 修改: 2024-11-21 03:04

io.undertow:undertow-core CVE-2024-4027 高危 2.2.37.Final 2.2.39.Final, 2.4.0.Beta1, 2.3.21.Final undertow: OutOfMemoryError in HttpServletRequestImpl.getParameterNames() can cause remote DoS attacks

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-4027

镜像层: sha256:761955f3e95ce69945b51efd33f044b5aaa912569862a5e8da59efe9ee794343

发布日期: 2026-01-30 15:16 修改: 2026-04-15 00:35

io.undertow:undertow-core CVE-2025-9784 高危 2.2.37.Final 2.2.38.Final, 2.3.20.Final undertow: Undertow MadeYouReset HTTP/2 DDoS Vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-9784

镜像层: sha256:761955f3e95ce69945b51efd33f044b5aaa912569862a5e8da59efe9ee794343

发布日期: 2025-09-02 14:15 修改: 2026-03-18 16:16

io.undertow:undertow-core CVE-2024-3884 高危 2.2.37.Final 2.2.39.Final, 2.4.0.Beta1, 2.3.21.Final undertow: OutOfMemory when parsing form data encoding with application/x-www-form-urlencoded

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-3884

镜像层: sha256:761955f3e95ce69945b51efd33f044b5aaa912569862a5e8da59efe9ee794343

发布日期: 2025-12-03 19:15 修改: 2026-04-15 00:35

org.codehaus.plexus:plexus-utils CVE-2022-4244 高危 2.0.4 3.0.24 codehaus-plexus: Directory Traversal

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-4244

镜像层: sha256:761955f3e95ce69945b51efd33f044b5aaa912569862a5e8da59efe9ee794343

发布日期: 2023-09-25 20:15 修改: 2025-05-05 14:12

org.codehaus.plexus:plexus-utils CVE-2025-67030 高危 2.0.4 4.0.3, 3.6.1 org.codehaus.plexus:plexus-utils: Plexus-utils: Directory Traversal in extractFile method

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-67030

镜像层: sha256:761955f3e95ce69945b51efd33f044b5aaa912569862a5e8da59efe9ee794343

发布日期: 2026-03-25 18:16 修改: 2026-05-01 17:12

ch.qos.logback:logback-core CVE-2025-11226 中危 1.3.15 1.5.19, 1.3.16 ch.qos.logback/logback-core: Conditional abitrary code execution in logback-core

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-11226

镜像层: sha256:761955f3e95ce69945b51efd33f044b5aaa912569862a5e8da59efe9ee794343

发布日期: 2025-10-01 08:15 修改: 2026-04-15 00:35

io.undertow:undertow-core CVE-2026-3260 中危 2.2.37.Final 2.4.0.Beta1 undertow: Undertow: Denial of Service due to premature multipart/form-data parsing in GET requests

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-3260

镜像层: sha256:761955f3e95ce69945b51efd33f044b5aaa912569862a5e8da59efe9ee794343

发布日期: 2026-03-24 05:16 修改: 2026-04-08 19:11

org.apache.httpcomponents:httpclient CVE-2020-13956 中危 4.5.12 4.5.13, 5.0.3 apache-httpclient: incorrect handling of malformed authority component in request URIs

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-13956

镜像层: sha256:761955f3e95ce69945b51efd33f044b5aaa912569862a5e8da59efe9ee794343

发布日期: 2020-12-02 17:15 修改: 2025-12-01 16:15

org.codehaus.plexus:plexus-utils CVE-2022-4245 中危 2.0.4 3.0.24 codehaus-plexus: XML External Entity (XXE) Injection

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-4245

镜像层: sha256:761955f3e95ce69945b51efd33f044b5aaa912569862a5e8da59efe9ee794343

发布日期: 2023-09-25 20:15 修改: 2024-11-21 07:34

ch.qos.logback:logback-core CVE-2026-1225 低危 1.3.15 1.5.25 ch.qos.logback/logback-core: Malicious logback.xml configuration file allows instantiation of arbitrary classes

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-1225

镜像层: sha256:761955f3e95ce69945b51efd33f044b5aaa912569862a5e8da59efe9ee794343

发布日期: 2026-01-22 10:16 修改: 2026-04-15 00:35