Aggregator
录用速递|我实验室8篇论文被USENIX Security'26接收!
5 days 11 hours ago
News📢 我实验室将有 8 篇论文在 USENIX Security 2026 上进行分享!
How to Build a Production RAG System on AWS From Scratch (Complete Beginner's Guide)
5 days 11 hours ago
New StorybyEmmanuela OpurumbyEmmanuela Opurum@cloudsavant | Solutions Architect at Softnet Technolo
Your AI Agent Will Lie to You. Your Tests Won't.
5 days 11 hours ago
New StorybyVeera Ravindra DivibyVeera Ravindra Divi@ravindradivi | Agentic AI & Distributed systems
CSP is Not Just a Header — It’s a Contract With the Browser
5 days 11 hours ago
New StorybyElena DarevskayabyElena Darevskaya@darevskaya | Senior Platform Engineer at SAP SESoftwa
CVE-2026-13322 | Red Hat OpenShift Virtualization 4 textproto.Reader.ReadLine allocation of resources
5 days 11 hours ago
A vulnerability, which was classified as critical, has been found in Red Hat OpenShift Virtualization 4. Affected is the function textproto.Reader.ReadLine. Performing a manipulation results in allocation of resources.
This vulnerability is cataloged as CVE-2026-13322. The attack must be initiated from a local position. There is no exploit available.
vuldb.com
CVE-2026-50742 | Revive Adserver up to 6.0.7 maintenance-acl-check.php cross site scripting
5 days 11 hours ago
A vulnerability classified as problematic was found in Revive Adserver up to 6.0.7. This impacts an unknown function of the file maintenance-acl-check.php. Such manipulation leads to cross site scripting.
This vulnerability is listed as CVE-2026-50742. The attack may be performed from remote. There is no available exploit.
vuldb.com
CVE-2026-50740 | Revive Adserver up to 6.0.7 zone-include.php refresh cross site scripting
5 days 11 hours ago
A vulnerability classified as problematic has been found in Revive Adserver up to 6.0.7. This affects an unknown function of the file zone-include.php. This manipulation of the argument refresh causes cross site scripting.
This vulnerability is tracked as CVE-2026-50740. The attack is possible to be carried out remotely. No exploit exists.
vuldb.com
CVE-2026-50745 | Revive Adserver up to 6.0.7 stats-video.php cross site scripting
5 days 11 hours ago
A vulnerability described as problematic has been identified in Revive Adserver up to 6.0.7. The impacted element is an unknown function of the file stats-video.php. The manipulation results in cross site scripting.
This vulnerability is identified as CVE-2026-50745. The attack can be executed remotely. There is not any exploit available.
vuldb.com
CVE-2026-50739 | Revive Adserver up to 6.0.7 tracker-campaigns.php access control
5 days 11 hours ago
A vulnerability marked as critical has been reported in Revive Adserver up to 6.0.7. The affected element is an unknown function of the file tracker-campaigns.php. The manipulation leads to improper access controls.
This vulnerability is referenced as CVE-2026-50739. Remote exploitation of the attack is possible. No exploit is available.
vuldb.com
CVE-2026-8661 | Rapid7 InsightConnect Markdown Plugin up to 3.x on Linux markdown_to_pdf cross site scripting
5 days 11 hours ago
A vulnerability labeled as problematic has been found in Rapid7 InsightConnect Markdown Plugin up to 3.x on Linux. Impacted is the function markdown_to_pdf. Executing a manipulation can lead to cross site scripting.
The identification of this vulnerability is CVE-2026-8661. The attack may be launched remotely. There is no exploit available.
The affected component should be upgraded.
vuldb.com
CVE-2026-48935 | Node.js up to 22.22.3/24.16.0/26.3.0 default permission
5 days 11 hours ago
A vulnerability identified as critical has been detected in Node.js up to 22.22.3/24.16.0/26.3.0. This issue affects some unknown processing. Performing a manipulation results in incorrect default permissions.
This vulnerability was named CVE-2026-48935. The attack needs to be approached locally. There is no available exploit.
vuldb.com
CVE-2026-48934 | Node.js up to 22.22.3/24.16.0/26.3.0 information disclosure
5 days 11 hours ago
A vulnerability categorized as problematic has been discovered in Node.js up to 22.22.3/24.16.0/26.3.0. This vulnerability affects unknown code. Such manipulation leads to information disclosure.
This vulnerability is uniquely identified as CVE-2026-48934. The attack can be launched remotely. No exploit exists.
vuldb.com
CVE-2026-48933 | Node.js up to 22.22.3/24.16.0/26.3.0 subtle.encrypt integer overflow
5 days 11 hours ago
A vulnerability was found in Node.js up to 22.22.3/24.16.0/26.3.0. It has been rated as problematic. This affects the function subtle.encrypt. This manipulation causes integer overflow.
This vulnerability is handled as CVE-2026-48933. The attack can be initiated remotely. There is not any exploit available.
vuldb.com
CVE-2026-48930 | Node.js up to 22.22.3/24.16.0/26.3.0 access control
5 days 11 hours ago
A vulnerability was found in Node.js up to 22.22.3/24.16.0/26.3.0. It has been declared as critical. Affected by this issue is some unknown functionality. The manipulation results in improper access controls.
This vulnerability is known as CVE-2026-48930. It is possible to launch the attack remotely. No exploit is available.
vuldb.com
CVE-2026-48928 | Node.js up to 22.22.3/24.16.0/26.3.0 access control
5 days 11 hours ago
A vulnerability was found in Node.js up to 22.22.3/24.16.0/26.3.0. It has been classified as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to improper access controls.
This vulnerability is traded as CVE-2026-48928. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2026-48615 | Node.js up to 22.22.3/24.16.0/26.3.0 Error Message private personal information
5 days 11 hours ago
A vulnerability was found in Node.js up to 22.22.3/24.16.0/26.3.0 and classified as problematic. Affected is an unknown function of the component Error Message Handler. Executing a manipulation can lead to exposure of private personal information to an unauthorized actor.
This vulnerability appears as CVE-2026-48615. The attack may be performed from remote. There is no available exploit.
vuldb.com
CVE-2026-48619 | Node.js up to 22.22.3/24.16.0/26.3.0 resource consumption
5 days 11 hours ago
A vulnerability has been found in Node.js up to 22.22.3/24.16.0/26.3.0 and classified as problematic. This impacts an unknown function. Performing a manipulation results in resource consumption.
This vulnerability is reported as CVE-2026-48619. The attack is possible to be carried out remotely. No exploit exists.
vuldb.com
CVE-2026-48618 | Node.js up to 22.22.3/24.16.0/26.3.0 unicode encoding
5 days 11 hours ago
A vulnerability, which was classified as problematic, was found in Node.js up to 22.22.3/24.16.0/26.3.0. This affects an unknown function. Such manipulation leads to improper handling of unicode encoding.
This vulnerability is documented as CVE-2026-48618. The attack can be executed remotely. There is not any exploit available.
vuldb.com
CVE-2026-13226 | trainingbusinesspros Groundhogg Plugin up to 4.5.4 on WordPress AJAX sql injection
5 days 11 hours ago
A vulnerability, which was classified as critical, has been found in trainingbusinesspros Groundhogg Plugin up to 4.5.4 on WordPress. The impacted element is an unknown function of the component AJAX Handler. This manipulation causes sql injection.
This vulnerability is registered as CVE-2026-13226. Remote exploitation of the attack is possible. No exploit is available.
It is advisable to upgrade the affected component.
vuldb.com