目标达成 感谢每一位支持者 — 我们达成了 100% 目标!

目标: 1000 元 · 已筹: 1359 元

100%

安全情报专区 17+

精选漏洞公告、利用分析、安全博客、GHSA Advisory 等情报来源,已自动清洗 + 中英双语呈现,持续更新。

241
已接入情报源
121
当前稳定在线
322
24 小时新增
17+
AI 处理情报
持续监听、清洗、翻译并进行 AI 分析 监听情报
示例:RCE · SSRF · GHSA · 反序列化
筛选
清除筛选
精品
Medium
MindMap组件XSS漏洞修复与Sanitize逻辑
github.com · 2026-08-28
TriliumNext/Trilium v0.105.0 and earlier
Read more
High
Trilium CVE-2026-8580:file:// 任意文件读取与 OOM 崩溃
CVE-2026-8580 · github.com · 2026-08-28
trilium < 0.104.0
Read more
Unknown
Trilium SSRF 修复:统一协议校验与 URL 验证
github.com · 2026-08-28

## 漏洞概述 - **提交信息**:`chore(core): remove duplicate SSRF implementation` - **提交者**:elindaron,提交于 5 月 29 日 - **提交哈希**:c417c99 - **变更规模**:5 个文件被修改,共删除约 744 行代码(+12 -744) - **核心问题**:代码库中存在重复的 SSRF(服务端请求伪造)…

Read more
精品
Critical
Trilium 笔记导入 RCE 漏洞分析(CVE-2026-53579)
CVE-2026-53579 · github.com · 2026-08-28
Trilium (Desktop applications) <= 0.103.0
Read more
精品
High
Trilium笔记应用ZIP导入XSS漏洞修复分析
GHSA-h2w1-cfg-cv9j8 · github.com · 2026-08-28
Trilium < 0.105.0
Read more
High
Shana 笔记搜索端点 IDOR/信息泄露漏洞修复与 POCAPI
github.com · 2026-08-28
TriliumNext (commit prior to 49fc7b6)
Read more
精品
High
Trilium CVE-2025-47127:shareTemplate 关系绕过安全导入实现已认证 RCE
CVE-2025-47127 · github.com · 2026-08-28
Trilium <= 0.103.0
Read more
精品
Critical
Trilium GeoMap 笔记导入 RCE 漏洞分析与 POC
CVE-2024-45999 · github.com · 2026-08-28
Trilium (desktop) ≤ 0.102.0
Read more
精品
Medium
geomap组件XSS漏洞修复与POC代码对比
github.com · 2026-08-28
Trilium v0.105.0 and earlier versions
Read more
精品
High
Trilium桌面应用存储型XSS致RCE漏洞分析
github.com · 2026-08-19
Trilium Desktop < v0.103.0
Read more
Critical
Trilium RCE: #docName路径遍历与XSS绕过安全导入
github.com · 2026-05-30
TriliumNext < v0.102.2
Read more
High
Trilium Notes TCC权限欺骗漏洞(GHSA-66pm-8hqg-2wxx)分析
GHSA-66pm-8hqg-2wxx · github.com · 2026-05-22
Trilium Notes <v0.102.2
Read more
精品
High
Trilium Desktop 剪贴板 API 认证绕过漏洞 (CVE-202X)
github.com · 2026-05-22
Trilium Desktop <v0.102.2
Read more
精品
Medium
Trilium Notes LFI漏洞(CVE-2025-35593)分析与修复
CVE-2025-35593 · github.com · 2026-05-22
Trilium Notes <v0.102.2
Read more
精品
High
Trilium Notes 存储型XSS致未授权RCE漏洞分析
github.com · 2026-05-22
Trilium Notes <v0.102.2
Read more

每篇文章经过自动 HTML→Markdown 清洗 + LLM 去噪 + 中英双语翻译。原始链接保留在文章末尾。

想看哪个安全博客 / 公告源?邮件告诉我们,每周新接 1-2 个。