Início
Início
Tendências
Tendências
Vulnerabilidades
Vulnerabilidades
Notícias
Notícias
Pesquisadores
Pesquisadores
Por que dbugs?
Por que dbugs?
Configurações

Nanhang

#31777de 55,140
8.4CVSS total
Vulnerabilidades · 2
Baixa
1
Média
1
PT-2026-67525
3.1
2026-08-03
Undefined · Undefined · CVE-2026-18682
A security flaw has been discovered in OpenAkita up to 1.27.12. This vulnerability affects unknown code of the file /api/upload of the component File Upload API. The manipulation of the argument File results in cross site scripting. The attack may be performed from remote. A high complexity level is associated with this attack. It is stated that the exploitability is difficult. The exploit has been released to the public and may be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.
PT-2026-47249
5.3
2026-05-20
Neovim · Neovim · CVE-2026-11487
**Nome do Software Vulnerável e Versões Afetadas** Neovim versões anteriores a 0.12.3 **Descrição** Uma falha no componente View Branch permite a injeção de comandos via host local. O problema existe na função `M.read()` localizada no arquivo `runtime/lua/vim/secure.lua`, onde a manipulação do argumento `path` pode levar à execução de comandos arbitrários. **Recomendações** Aplique o patch f83e0dcaf8cf18de94828341b0a1a61a86c75baf para remediar o problema. Como medida paliativa temporária, restrinja ou evite o uso da função `M.read()` em `runtime/lua/vim/secure.lua` ao lidar com argumentos `path` não confiáveis.