Eclipse Accessibility Tools Framework是美国Eclipse基金会的一个辅助无障碍工具开发的框架。 Eclipse Accessibility Tools Framework 1.6.0及之前版本(包括源代码版本v20260630及之前版本和基于ACTF的应用程序miChecker 3.1.0及之前版本)存在输入验证错误漏洞,该漏洞源于XML外部实体引用问题,可能导致恶意第三方通过运行使用Eclipse ACTF(包括miChecker)的计算机访问本地资源或内部网络资源
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Eclipse Foundation | Eclipse Accessibility Tools Framework (ACTF) | 0.5.0≤ 1.6.0 |
affected |
≤ v20260630 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Eclipse Foundation | Eclipse Accessibility Tools Framework (ACTF) | 0.5.0 ~ 1.6.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-60009 | 8.8 HIGH | Eclipse Theia 路径遍历漏洞 |
| CVE-2026-12609 | 7.5 HIGH | Eclipse Theia 路径遍历漏洞 |
| CVE-2026-61891 | 7.5 HIGH | Eclipse Theia 信息泄露漏洞 |
| CVE-2026-14574 | 5.7 MEDIUM | Eclipse Theia 输入验证错误漏洞 |
| CVE-2026-46581 | Eclipse Mojarra 路径遍历漏洞 |
No comments yet