Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%
Vulnerability List
CVE IDTitleVendorProductSeverityCVSS ScorePublished AtAI Analysis
CVE-2026-41411 Vim: Command injection via backtick expansion in tag filenames vimvim Medium 6.6 2026-04-24 16:51:40 Deep Dive
CVE-2026-40897 Math.js: Unsafe object property setter in mathjs josdejongmathjs High 8.8 2026-04-24 16:48:35 Deep Dive
CVE-2026-41066 lxml: Default configuration of iterparse() and ETCompatXMLParser() allows XXE to local files lxmllxml High 7.5 2026-04-24 16:45:20 Deep Dive
CVE-2026-6912 Privilege Escalation via Self-Writable Cognito Custom Attribute in AWS Ops Wheel AWSAWS Ops Wheel High 8.8 2026-04-24 16:11:46 Deep Dive
CVE-2026-6911 Authentication Bypass via Missing JWT Signature Verification in AWS Ops Wheel AWSAWS Ops Wheel Critical 9.8 2026-04-24 16:08:46 Deep Dive
CVE-2026-39920 BridgeHead FileStore < 24A Apache Axis2 Default Credentials RCE BridgeHead SoftwareFileStore Critical 9.8 2026-04-24 15:48:26 Deep Dive
CVE-2026-31672 wifi: rt2x00usb: fix devres lifetime LinuxLinux--2026-04-24 14:45:20 Deep Dive
CVE-2026-31671 xfrm_user: fix info leak in build_report() LinuxLinux--2026-04-24 14:45:19 Deep Dive
CVE-2026-31670 net: rfkill: prevent unlimited numbers of rfkill events from being created LinuxLinux--2026-04-24 14:45:18 Deep Dive
CVE-2026-31668 seg6: separate dst_cache for input and output paths in seg6 lwtunnel LinuxLinux--2026-04-24 14:45:17 Deep Dive
CVE-2026-31669 mptcp: fix slab-use-after-free in __inet_lookup_established LinuxLinux--2026-04-24 14:45:17 Deep Dive
CVE-2026-31667 Input: uinput - fix circular locking dependency with ff-core LinuxLinux--2026-04-24 14:45:16 Deep Dive
CVE-2026-31665 netfilter: nft_ct: fix use-after-free in timeout object destroy LinuxLinux--2026-04-24 14:45:15 Deep Dive
CVE-2026-31666 btrfs: fix incorrect return value after changing leaf in lookup_extent_data_ref() LinuxLinux--2026-04-24 14:45:15 Deep Dive
CVE-2026-31664 xfrm: clear trailing padding in build_polexpire() LinuxLinux--2026-04-24 14:45:14 Deep Dive
CVE-2026-31663 xfrm: hold dev ref until after transport_finish NF_HOOK LinuxLinux--2026-04-24 14:45:13 Deep Dive
CVE-2026-31662 tipc: fix bc_ackers underflow on duplicate GRP_ACK_MSG LinuxLinux--2026-04-24 14:45:13 Deep Dive
CVE-2026-31661 wifi: brcmsmac: Fix dma_free_coherent() size LinuxLinux--2026-04-24 14:45:12 Deep Dive
CVE-2026-31660 nfc: pn533: allocate rx skb before consuming bytes LinuxLinux--2026-04-24 14:45:11 Deep Dive
CVE-2026-31658 net: altera-tse: fix skb leak on DMA mapping error in tse_start_xmit() LinuxLinux--2026-04-24 14:45:10 Deep Dive