NEMU是XiangShan开源的一个用于教学的全系统模拟器。 NEMU存在安全漏洞,该漏洞源于RISC-V Hypervisor CSR处理存在实现缺陷,可能导致虚拟化配置执行错误,在虚拟化环境中执行缓存块管理指令时引发意外陷阱或拒绝服务。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-6650 | 4.7 MEDIUM | Z-BlogPHP ZBA File app_upload.php UnPack unrestricted upload |
| CVE-2026-6591 | 4.3 MEDIUM | ComfyUI LoadImage Node folder_paths.py folder_paths.get_annotated_filepath path traversal |
| CVE-2026-6590 | 4.3 MEDIUM | ComfyUI Model Preview Endpoint model_manager.py get_model_preview path traversal |
| CVE-2026-6589 | 4.3 MEDIUM | ComfyUI server.py create_origin_only_middleware cross-site request forgery |
| CVE-2026-6593 | 3.5 LOW | ComfyUI View Endpoint server.py cross site scripting |
| CVE-2026-6592 | 3.5 LOW | ComfyUI userdata Endpoint user_manager.py getuserdata cross site scripting |
| CVE-2026-29646 | NEMU 安全漏洞 | |
| CVE-2026-29643 | XiangShan 安全漏洞 | |
| CVE-2026-29648 | NEMU 安全漏洞 | |
| CVE-2026-29647 | NEMU 安全漏洞 | |
| CVE-2026-30266 | DeepCool DeepCreative 安全漏洞 | |
| CVE-2026-29642 | XiangShan 安全漏洞 | |
| CVE-2026-29645 | NEMU 安全漏洞 | |
| CVE-2026-39109 | PHPGurukul Apartment Visitors Management System 安全漏洞 | |
| CVE-2026-39111 | PHPGurukul Apartment Visitors Management System 安全漏洞 | |
| CVE-2026-39110 | PHPGurukul Apartment Visitors Management System 安全漏洞 | |
| CVE-2026-39112 | PHPGurukul Apartment Visitors Management System 安全漏洞 | |
| CVE-2026-26399 | Arduino 安全漏洞 | |
| CVE-2025-66954 | Buffalo LinkStation 安全漏洞 | |
| CVE-2026-30269 | doorman 安全漏洞 |
No comments yet