目标达成 感谢每一位支持者 — 我们达成了 100% 目标!

目标: 1000 元 · 已筹: 1336

100%

安全情报专区 9+

精选漏洞公告、利用分析、安全博客、GHSA Advisory 等情报来源,已自动清洗 + 中英双语呈现,持续更新。

213
已接入情报源
94
当前稳定在线
420
24 小时新增
9+
AI 处理情报
持续监听、清洗、翻译并进行 AI 分析 监听情报
示例:RCE · SSRF · GHSA · 反序列化
筛选
清除筛选
Medium
Backstage @backstage/plugin-auth-backend OAuth redirect_uri允许列表绕过导致账户接管 (CVE-2026-7263)
CVE-2026-7263 · github.com · 2026-08-14
@backstage/plugin-auth-backend <= 0.29.1
Read more
High
CVE-2026-25153: Backstage TechDocs 任意代码执行漏洞
CVE-2026-25153 · github.com · 2026-01-31
Backstage 1.14.0 · Backstage < 1.13.10
Read more
Medium
Backstage TechDocs 路径遍历漏洞 (CVE-2026-25152)
CVE-2026-25152 · github.com · 2026-01-31
@backstage/plugin-techdocs-node 1.14.0 · @backstage/plugin-techdocs-node < 1.13.10
Read more
High
FetchUrlReader重定向注入与SSRF防护修复
github.com · 2026-01-27

### 关键漏洞信息 #### 1. **Redirect Validation** - **Description**: - The code changes ensure that redirects are validated against the reading configuration. This is essential to prevent redirect injection …

Read more
High
Backstage 路径遍历漏洞修复:改进符号链接处理逻辑
github.com · 2026-01-27
@backstage/backend-plugin-api · @backstage/cli-common
Read more
Medium
Backstage @backstage/backend-plugin-api 路径遍历漏洞 (CVE-2026-24047)
CVE-2026-24047 · github.com · 2026-01-27
@backstage/backend-plugin-api <=0.1.16
Read more
High
Backstage SSRF漏洞(CVE-2026-24048)及修复指南
CVE-2026-24048 · github.com · 2026-01-27
@backstage/backend-defaults < 0.12.2 · @backstage/backend-defaults >= 0.13.0 < 0.13.2 …
Read more
High
Backstage Scaffolder 符号链接路径遍历漏洞 (CVE-2026-24046)
CVE-2026-24046 · github.com · 2026-01-27
@backstage/backend-defaults < 0.12.2, >= 0.13.0, < 0.13.2, >= 0.14.0, < 0.14.1 · @backstage/plugin-scaffolder-backend < 2.2.2, >= 3.0.0, < 3.0.2, >= 3.1.0, < 3.1.1 …
Read more
Medium
Backstage Scaffolder SSRF/SSTI漏洞(CVE-2024-53983)分析
CVE-2024-53983 · github.com · 2024-12-01
@backstage/plugin-scaffolder-node <0.4.12 · @backstage/plugin-scaffolder-node 0.5.0 …
Read more

每篇文章经过自动 HTML→Markdown 清洗 + LLM 去噪 + 中英双语翻译。原始链接保留在文章末尾。

想看哪个安全博客 / 公告源?邮件告诉我们,每周新接 1-2 个。